The Product Filter for WooCommerce by WBW WordPress plugin before 3.1.3 does not sanitize and escape a parameter before using it in a SQL statement, allowing unauthenticated users to perform SQL injection attacks
CVE-2026-3830
NONE
EPSS 0.08%
Updated Apr 13, 2026
Unknown
unknown:product filter for woocommerce by wbw
CVE Details
CVE ID
CVE-2026-3830
Published Date
Apr 13, 2026
Vendor
Unknown
Severity
NONE
Exploit Prediction (EPSS)
Probability of Exploit
0.08%
Likelihood of exploitation in next 30 days
Percentile:
24.5th percentile (higher than 24.5% of all CVEs)
Standard patching cycle
Impact
Minimal impact
Source
View Advisory