AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2026-27540

CRITICAL · CVSS 9 EPSS 0.47%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-03-19 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.0. See the original NVD description below for full technical details.

CVE
CVE-2026-27540
Severity
CRITICAL
CVSS
9
EPSS
0.47%

Original NVD Description

Unrestricted Upload of File with Dangerous Type vulnerability in Rymera Web Co Pty Ltd. Woocommerce Wholesale Lead Capture woocommerce-wholesale-lead-capture allows Using Malicious Files.This issue affects Woocommerce Wholesale Lead Capture: from n/a through <= 2.0.3.1.