CVE-2026-11496 | edgarrojas PDF Builder for WooCommerce Plugin up to 2.0.8 on WordPress AJAX woocommerce-pdf-invoice-ajax.php InspectOrder OrderNumber resource injection
A vulnerability, which was classified as problematic, has been found in edgarrojas PDF Builder for WooCommerce Plugin up to 2.0.8 on WordPress. Affected by this vulnerability is the function InspectOrder of the file woocommerce-pdf-invoice-ajax.php of the component AJAX Handler. The manipulation of the argument OrderNumber leads to improper control of resource identifiers.
This vulnerability is uniquely identified as CVE-2026-11496. The attack is possible to be carried out remotely. No exploit exists.VulDB Recent EntriesRead More