CVE 7.1 HIGH

WordPress Wallet System for WooCommerce plugin <= 2.7.5 - Broken Authentication vulnerability_CVE-2026-42654

7.1 / 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N

Description

Authentication Bypass Using an Alternate Path or Channel vulnerability in WP Swings Wallet System for WooCommerce allows Password Recovery Exploitation.

This issue affects Wallet System for WooCommerce: from n/a through 2.7.5.

Basic Information

ID CVE-2026-42654
Source Patchstack
Published Jun 2, 2026 at 14:48
Modified Jun 2, 2026 at 14:49

Affected Product

Vendor WP Swings
Product Wallet System for WooCommerce
Version n/a
Affected Versions WP Swings Wallet System for WooCommerce n/a

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.