CVE-2026-95602
Authorization Bypass Through User-Controlled Key vulnerability in YITH YITH WooCommerce Request A Quote allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects YITH WooCommerce Request A Quote: from n/a before 4.46.1.
- Published Sep 23, 2026
- CVSS 6.5 medium
- 0.3% chance of exploitation in the next 30 days (EPSS)
- A fix is available