Vulnerability Brief

CVE-2026-56048

  • Severity: MEDIUM
  • CVSS score: 6.5

Technical summary

Unauthenticated Insecure Direct Object References (IDOR) in Payment Gateway Based Fees and Discounts for WooCommerce <= 3.0.0 versions.