What is CVE-2026-28005?
This critical vulnerability in Kadence WooCommerce Email Designer plugin (<=1.5.19) allows unauthenticated privilege escalation. Affected users must immediately update the plugin to the latest patched version.
Azərbaycanca: Bu kritik boşluq Kadence WooCommerce Email Designer plaginin 1.5.19 və əvvəlki versiyalarında autentifikasiya olunmamış imtiyaz artımına (Unauthenticated Privilege Escalation) imkan verir. Təsirə məruz qalan sistemlərin administratorları dərhal plagini ən son versiyaya yeniləməlidirlər.
FAQ2
Which plugin is affected by CVE-2026-28005?
This vulnerability was discovered in the Kadence WooCommerce Email Designer plugin, specifically in versions 1.5.19 and below.
What can the exploitation of this vulnerability lead to?
CVE-2026-28005 can lead to Unauthenticated Privilege Escalation.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.