SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-32551

CRITICAL · CVSS 9.3 EPSS 0.24%

Source: NVD + CISA KEV + EPSS · Published 2026-08-24 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

Woo Essential versions up to 4.3.0 are vulnerable to an unauthenticated SQL injection, allowing attackers to manipulate database queries and potentially gain unauthorized access to sensitive data. The critical severity of this vulnerability (CVSS 9.3) necessitates immediate attention from organizations using affected versions to mitigate the risk of data breaches and exploitation. All users and administrators of Woo Essential should prioritize patching or upgrading to secure their applications against this threat.

CVE
CVE-2026-32551
Severity
CRITICAL
CVSS
9.3
EPSS
0.24%

Original NVD Description

Unauthenticated SQL Injection in Woo Essential <= 4.3.0 versions.