What is CVE-2026-57703?
CVE-2026-57703 describes a broken access control vulnerability in the 'Subscriber' role within the Sunshine Photo Cart plugin versions up to 3.6.10.1, potentially allowing low-privileged users to access higher-privilege data. Site administrators using this plugin should update to the latest patched version to mitigate the issue.
Azərbaycanca: CVE-2026-57703, Sunshine Photo Cart plagininin 3.6.10.1-ə qədər olan versiyalarında "Subscriber" rolunda olan istifadəçilər üçün icazə yoxlamasındakı zəifliyi (broken access control) təsvir edir. Bu zəiflik aşağı səviyyəli istifadəçilərə daha yüksək icazə tələb edən məlumatlara daxil olmağa imkan verə bilər. Plagindən istifadə edən saytların administrasiyası problemi aradan qaldırmaq üçün pliqini ən son versiyaya yeniləməlidir.
Related CVEs
link basis: same weakness class CWE-284
FAQ2
Which user role is affected by the CVE-2026-57703 vulnerability in the Sunshine Photo Cart plugin?
CVE-2026-57703 describes a broken access control vulnerability concerning users with the 'Subscriber' role.
How can the issue described in CVE-2026-57703 for the Sunshine Photo Cart plugin be resolved?
Site administrators using the plugin should update to the latest patched version to mitigate the issue.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.