LOW
FluentCart
CVE published 2026-07-31
CVE-2026-14927
The FluentCart A New Era of eCommerce WordPress plugin before version 1.5.3 is vulnerable to unauthorized access due to insufficient authorization and ownership checks on customer order documents. This allows unauthenticated visitors to enumerate and disclose sensitive customer information, including names, email addresses, and postal addresses. The vulnerability has a CVSS score of 3.7, indicating a low [truncated]