SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-57709

HIGH · CVSS 8.6 EPSS 0.37%

Source: NVD + CISA KEV + EPSS · Published 2026-07-13 · Last synced 2026-08-12

CyberRota Analysis

AI-Generated

The vulnerability in WP Swings Membership For WooCommerce allows attackers to exploit path traversal, potentially gaining unauthorized access to sensitive files on the server. This high-severity flaw affects versions up to 3.1.0, making it critical for users of this plugin to prioritize immediate patching or mitigation to prevent data breaches. E-commerce operators utilizing this plugin should take action to secure their systems against potential exploitation.

CVE
CVE-2026-57709
Severity
HIGH
CVSS
8.6
EPSS
0.37%

Original NVD Description

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WP Swings Membership For WooCommerce membership-for-woocommerce allows Path Traversal.This issue affects Membership For WooCommerce: from n/a through <= 3.1.0.