CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 10.0. It may be remotely exploitable.
CVE
CVE-2026-52704
Severity
CRITICAL
CVSS
10
EPSS
0.30%
Original NVD Description
Improper Control of Generation of Code ('Code Injection') vulnerability in Edgar Rojas WooCommerce PDF Invoice Builder allows Remote Code Inclusion. This issue affects WooCommerce PDF Invoice Builder: from n/a through 2.0.8.