Extension WordPress

Vulnérabilités Wholesale Lead Capture Plugin for WooCommerce

Cette page rassemble les failles publiées pour Wholesale Lead Capture Plugin for WooCommerce, leurs plages de versions affectées et les correctifs signalés dans la base locale.

2Vulnérabilités
2Critiques
2Avec correctif
9,8CVSS maximal

Historique de sécurité

CVE et vulnérabilités de Wholesale Lead Capture Plugin for WooCommerce

2 fiches

CVE-2026-27540 Critique · 9,8
Wholesale Lead Capture Plugin for WooCommerce

Woocommerce Wholesale Lead Capture <= 2.0.3.1 – Unauthenticated Arbitrary File Upload

The Wholesale Lead Capture Plugin for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in all versions up to, and including, 2.0.3.1. This makes it possible for unauthenticated attackers to…

Versions affectées

*-2.0.3.1

Correctif

2.0.3.2

Publication

20/02/2026

CVE-2026-27542 Critique · 9,8
Wholesale Lead Capture Plugin for WooCommerce

Woocommerce Wholesale Lead Capture <= 2.0.3.1 – Unauthenticated Privilege Escalation

The Wholesale Lead Capture Plugin for WooCommerce plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 2.0.3.1. This makes it possible for unauthenticated attackers to elevate their privileges to that of an…

Versions affectées

*-2.0.3.1

Correctif

2.0.3.2

Publication

20/02/2026

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités