AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-66466

HIGH · CVSS 7.5 EPSS 0.25%

Source: NVD + CISA KEV + EPSS · Published 2026-08-13 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

An unauthenticated broken access control vulnerability exists in the Smart Sales Booster for WooCommerce versions up to 2.1.1, allowing attackers to exploit unauthorized access to sensitive functionalities. This could lead to unauthorized actions such as manipulating sales processes or accessing restricted data. E-commerce platforms using this plugin should prioritize patching this vulnerability to mitigate potential exploitation risks.

CVE
CVE-2026-66466
Severity
HIGH
CVSS
7.5
EPSS
0.25%

Original NVD Description

Unauthenticated Broken Access Control in StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart <= 2.1.1 versions.