Skip to content
CVE / MITRECVE Recent··1 min read

CVE-2026-15324 - SysBasics Customize My Account for WooCommerce <= 4.4.14 - Authenticated (Shop Manager+) Stored Cross-Site Scripting via 'row_type' Parameter

CVE ID :CVE-2026-15324 Published : July 16, 2026, 8:26 a. m. | 32 minutes ago Description :The SysBasics Customize My Account for WooCommerce – Live My Account Customizer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'row_type' parameter in all versions up to, and including, 4.

4. 14 due to insufficient input sanitization and output escaping.

Originally reported by CVE Recent
0 comments

0 comments

Posting as BoldGecko694
0/1000

No comments yet. Be the first to start the discussion.