CVE-2026-27542: WordPress Woocommerce Wholesale Lead Capture plugin <= 2.0.3.1 - Privilege Escalation vulnerability
Incorrect Privilege Assignment vulnerability in Rymera Web Co Pty Ltd. Woocommerce Wholesale Lead Capture woocommerce-wholesale-lead-capture allows Privilege Escalation.This issue affects Woocommerce Wholesale Lead Capture: from n/a through <= 2.0.3.1.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2026-27542?
CVE-2026-27542 is considered a high severity privilege escalation vulnerability.
How do I fix CVE-2026-27542?
To fix CVE-2026-27542, update the Woocommerce Wholesale Lead Capture plugin to a version higher than 2.0.3.1.
What type of vulnerability is CVE-2026-27542?
CVE-2026-27542 is a privilege escalation vulnerability related to incorrect privilege assignment.
Who is the vendor for CVE-2026-27542?
The vendor for CVE-2026-27542 is Rymera Web Co Pty Ltd, the developer of the Woocommerce Wholesale Lead Capture plugin.
Which versions are vulnerable to CVE-2026-27542?
Versions of the Woocommerce Wholesale Lead Capture plugin up to and including 2.0.3.1 are vulnerable to CVE-2026-27542.