cleantalk
Vulnerabilities and Security Researches

Product Rearrange for WooCommerce, CVE-2026-31920

CVE, Research URL

CVE-2026-31920

Published on
Mar 25, 2026
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Devteam HaywoodTech Product Rearrange for WooCommerce products-rearrange-woocommerce allows Blind SQL Injection.This issue affects Product Rearrange for WooCommerce: from n/a through <= 1.2.2.
Affected versions
max 1.2.2.
Status
vulnerable