CVE-2026-56826 | Shopper Settings ZoneShippingOptions.php deleteAction ID privileges management
A vulnerability, which was classified as problematic, has been found in Shopper. Affected by this issue is the function ZoneShippingOptions::deleteAction of the file packages/admin/src/Livewire/Components/Settings/Zones/ZoneShippingOptions.php of the component Settings. The manipulation of the argument ID leads to improper privilege management.
This vulnerability is traded as CVE-2026-56826. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More