CVE-2026-16611
N/A
N/A
Summary
The Product Feed PRO for WooCommerce by AdTribes WordPress plugin before 13.5.7 does not perform an authorization check on one of its REST read routes, allowing unauthenticated users to disclose a store's feed configuration (rules, filters and field mapping) and to enumerate the full product category taxonomy.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Unknown | Product Feed PRO for WooCommerce by AdTribes | 0 < 13.5.7 | affected |
Weaknesses
- CWE-200 Information Exposure
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.