PatchSiren

FluentCart CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

LOW FluentCart CVE published 2026-07-31

CVE-2026-14927

The FluentCart A New Era of eCommerce WordPress plugin before version 1.5.3 is vulnerable to unauthorized access due to insufficient authorization and ownership checks on customer order documents. This allows unauthenticated visitors to enumerate and disclose sensitive customer information, including names, email addresses, and postal addresses. The vulnerability has a CVSS score of 3.7, indicating a low [truncated]