CVE-2026-57703: WordPress Sunshine Photo Cart plugin <= 3.6.10.1 - Broken Access Control vulnerability
Subscriber Broken Access Control in Sunshine Photo Cart <= 3.6.10.1 versions.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress Sunshine Photo Cart Pluginto a version that resolves this vulnerability.Fixed in 3.6.11
Event History
Frequently Asked Questions
What is CVE-2026-57703?
CVE-2026-57703 is a Broken Access Control vulnerability found in the Sunshine Photo Cart plugin for WordPress versions up to 3.6.10.1.
What is the severity of CVE-2026-57703?
The severity of CVE-2026-57703 is medium, with a score of 6.3.
How do I fix CVE-2026-57703?
To fix CVE-2026-57703, update the Sunshine Photo Cart plugin to the latest version that addresses the vulnerability.
What are the consequences of CVE-2026-57703?
The consequences of CVE-2026-57703 include unauthorized access for subscribers, potentially leading to data exposure or manipulation.
Which versions of WordPress Sunshine Photo Cart are affected by CVE-2026-57703?
CVE-2026-57703 affects all Sunshine Photo Cart plugin versions up to and including 3.6.10.1.