Skip to main content
// menu
×
>
Loading…
// threat_lookup
×
☰
INTELLIGENCE ROOM
// cybersoc_platform
Dashboard
CVE/RCE
APT
News
Reports
Pulse
SOON
Graph
SOON
Market
SOON
Playback
SOON
NOMINAL
0
Sign in
Join →
CVE-2026-1128 — The WP eCommerce WordPress plugin through 3.15.1 does not have CSRF check in place when deleting coupons, which could allow attackers to make a logged in admin remove them via a CSRF attack — CVE Database · The Intelligence Room