CyberRota Analysis
AI-GeneratedThe WooCommerce PDF Invoice Builder plugin versions up to 2.0.8 are vulnerable to unauthorized access, allowing attackers to retrieve embedded sensitive data. This exposure could lead to the disclosure of critical system information, potentially compromising user privacy and security. E-commerce businesses using this plugin should prioritize patching or upgrading to mitigate the risk.
CVE
CVE-2026-57393
Severity
MEDIUM
CVSS
6.5
EPSS
0.27%
Original NVD Description
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in EDGARROJAS WooCommerce PDF Invoice Builder woo-pdf-invoice-builder allows Retrieve Embedded Sensitive Data.This issue affects WooCommerce PDF Invoice Builder: from n/a through <= 2.0.8.