CVE-2026-3504 | dokaninc Dokan: AI Powered WooCommerce Multivendor Marketplace Solution Plugin REST API Endpoint reviews prepare_reviews_for_response information disclosure

SecurityVulns

A vulnerability marked as problematic has been reported in dokaninc Dokan: AI Powered WooCommerce Multivendor Marketplace Solution Plugin up to 4.3.1 on WordPress. This vulnerability affects the function prepare_reviews_for_response of the file /dokan/v1/stores/{id}/reviews of the component REST API Endpoint. This manipulation causes information disclosure.

This vulnerability is tracked as CVE-2026-3504. The attack is possible to be carried out remotely. No exploit exists.VulDB Recent EntriesRead More