SEPTEMBER 13, 2026
Live Feed
Back to database
Case File

CVE-2026-57773

HIGH · CVSS 7.6 EPSS 0.27%

Source: NVD + CISA KEV + EPSS · Published 2026-07-13 · Last synced 2026-08-12

CyberRota Analysis

AI-Generated

The vulnerability in Zorem Advanced Shipment Tracking for WooCommerce allows for Blind SQL Injection, which can be exploited to manipulate database queries and potentially access sensitive data. This affects all versions up to and including 4.0, posing a significant risk to users who rely on this plugin for e-commerce operations. Organizations using this plugin should prioritize immediate remediation to mitigate the risk of data breaches and unauthorized access.

CVE
CVE-2026-57773
Severity
HIGH
CVSS
7.6
EPSS
0.27%

Original NVD Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Zorem Advanced Shipment Tracking for WooCommerce woo-advanced-shipment-tracking allows Blind SQL Injection.This issue affects Advanced Shipment Tracking for WooCommerce: from n/a through <= 4.0.