CVE-2026-91020 | WebToffee Gift Cards for WooCommerce Plugin up to 1.3.0 on WordPress external control of assumed-immutable web parameter

SecurityVulns

A vulnerability classified as problematic was found in WebToffee Gift Cards for WooCommerce Plugin up to 1.3.0 on WordPress. The impacted element is an unknown function. Such manipulation leads to external control of assumed-immutable web parameter.

This vulnerability is listed as CVE-2026-91020. The attack may be performed from remote. There is no available exploit.

Upgrading the affected component is advised.VulDB Recent EntriesRead More