CyberRota Yorumu
Saldırganın giriş yapmış olması gerekebilir.
CVE
CVE-2026-11351
Severity
UNKNOWN
CVSS
N/A
EPSS
Yok
WordPress
Orijinal NVD Açıklaması
The ShinyStat Analytics WordPress plugin before 1.0.17 does not perform any authorization check on one of its REST API endpoints, allowing unauthenticated users to retrieve information about non-published (e.g. draft, pending or private) WooCommerce products.