CVE-2026-87846 | Shipping for Nova Poshta Plugin up to 1.19.8 on WordPress AJAX Actions authorization

SecurityVulns

A vulnerability, which was classified as critical, has been found in Shipping for Nova Poshta Plugin up to 1.19.8 on WordPress. Affected is an unknown function of the component AJAX Actions. This manipulation causes missing authorization.

This vulnerability appears as CVE-2026-87846. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More