OCTOBER 10, 2026
Live Feed
Back to database
Case File

CVE-2026-93928

HIGH · CVSS 7.3 EPSS 0.40%

Source: NVD + CISA KEV + EPSS · Published 2026-09-22 · Last synced 2026-10-10

CyberRota Analysis

AI-Generated

The Taxi Booking Manager for WooCommerce, prior to version 2.0.8, is vulnerable to an authentication bypass due to an alternate path or channel, allowing unauthorized access to sensitive functionalities. This high-severity vulnerability can lead to unauthorized actions within the application, potentially compromising user data and system integrity. Organizations using this plugin should prioritize immediate updates to mitigate the risk of exploitation.

CVE
CVE-2026-93928
Severity
HIGH
CVSS
7.3
EPSS
0.40%

Original NVD Description

Authentication Bypass Using an Alternate Path or Channel vulnerability in Magepeople inc. Taxi Booking Manager for WooCommerce allows Authentication Bypass. This issue affects Taxi Booking Manager for WooCommerce: from n/a before 2.0.8.