CVE-2026-49056: WordPress WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels plugin <= 4.9.4 - Sensitive Data Exposure vulnerability
Unauthenticated Sensitive Data Exposure in WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels <= 4.9.4 versions.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels Pluginto a version that resolves this vulnerability.Fixed in 4.9.5
Event History
Frequently Asked Questions
What is the severity of CVE-2026-49056?
CVE-2026-49056 has a high severity rating of 7.5.
What type of vulnerability is CVE-2026-49056?
CVE-2026-49056 is classified as a Sensitive Data Exposure vulnerability.
How do I fix CVE-2026-49056?
To fix CVE-2026-49056, update the WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels plugin to version 4.9.5 or later.
What software is affected by CVE-2026-49056?
CVE-2026-49056 affects the WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels plugin version 4.9.4 and earlier.
What are the potential risks of CVE-2026-49056?
The potential risks of CVE-2026-49056 include unauthorized access to sensitive data due to unauthenticated exposure.