CVE-2026-9858 | wpexpertshub Partial Shipment for WooCommerce Plugin up to 3.4 on WordPress AJAX handlers woocommerce-partial-shipment.php order_id improper authorization
A vulnerability described as critical has been identified in wpexpertshub Partial Shipment for WooCommerce Plugin up to 3.4 on WordPress. Affected by this vulnerability is an unknown functionality of the file woocommerce-partial-shipment.php of the component AJAX handlers. Executing a manipulation of the argument order_id can lead to improper authorization.
This vulnerability is tracked as CVE-2026-9858. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More