CVE-2026-81794: WordPress Shirt Product Designer for WooCommerce plugin 1.0.4 - Broken Access Control vulnerability
Published Sep 10, 2026
·Updated
Unauthenticated Broken Access Control in Shirt Product Designer for WooCommerce 1.0.4 versions.
Affected Software
1 affected component
WordPress/Shirt Product Designer for WooCommerce=1.0.4
Event History
Sep 10, 2026
CVE Published
via MITRE·02:23 PM
Data Sourced
via MITRE·02:23 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What level of access does an attacker need to exploit this issue?
No authentication or prior privileges are required. The attack vector is network-accessible and user interaction is not required.
2
What is the likely security impact?
The issue has high integrity impact, meaning an attacker may be able to alter data or functionality. No confidentiality or availability impact is identified in the provided severity vector.
3
Which plugin versions are identified as affected?
The provided information identifies Shirt Product Designer for WooCommerce version 1.0.4. It does not state whether earlier versions, later versions, or a fixed version are affected.