cleantalk
Vulnerabilities and Security Researches

Live sales notification for WooCommerce, Fake sales notification for WooCommerce, Recent sales popup for WooCommerce, CVE-2026-27066

CVE, Research URL

CVE-2026-27066

Published on
Feb 19, 2026
Research Description
Missing Authorization vulnerability in PI Web Solution Live sales notification for WooCommerce live-sales-notifications-for-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Live sales notification for WooCommerce: from n/a through <= 2.3.46.
Affected versions
max 2.3.46.
Status
vulnerable