SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-65501

MEDIUM · CVSS 5.3 EPSS 0.23%

Source: NVD + CISA KEV + EPSS · Published 2026-07-23 · Last synced 2026-08-22

CyberRota Analysis

AI-Generated

Shiptastic for WooCommerce versions up to 5.1.0 are vulnerable to unauthenticated Insecure Direct Object References (IDOR), allowing attackers to access or manipulate resources without proper authorization. This could lead to unauthorized data exposure or modification, potentially compromising user information. E-commerce businesses using affected versions should prioritize patching to mitigate risks associated with this vulnerability.

CVE
CVE-2026-65501
Severity
MEDIUM
CVSS
5.3
EPSS
0.23%

Original NVD Description

Unauthenticated Insecure Direct Object References (IDOR) in Shiptastic for WooCommerce <= 5.1.0 versions.