CVE WATCH / VULNERABILITY DETAIL

CVE-2026-93746

HIGHCVSS 7.5NVD feed

Published 10 October 2026 · tracked since 10 October 2026

Description

The WebToffee WooCommerce PDF Invoices, Packing Slips, Delivery Notes & Shipping Labels plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, 5.0.2 via the 'email' parameter of the guest print_document_from_the_mail_link handler dispatched from prin

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-93746 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-93746

HIGHCVSS 7.5NVD feed

Published 10 October 2026 · tracked since 10 October 2026

Description

The WebToffee WooCommerce PDF Invoices, Packing Slips, Delivery Notes & Shipping Labels plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, 5.0.2 via the 'email' parameter of the guest print_document_from_the_mail_link handler dispatched from prin

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]