Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update the WordPress CURCY plugin to the latest available version (at least 2.2.18).
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 05 Oct 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Incorrect Calculation vulnerability in VillaTheme CURCY woo-multi-currency allows Integer Attacks.This issue affects CURCY: from n/a through 2.2.17. | |
| Title | WordPress CURCY plugin <= 2.2.17 - Broken Access Control vulnerability | |
| Weaknesses | CWE-682 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-10-05T08:40:24.198Z
Reserved: 2026-09-24T00:20:10.982Z
Link: CVE-2026-97071
No data.
Status : Received
Published: 2026-10-05T09:17:13.887
Modified: 2026-10-05T09:17:13.887
Link: CVE-2026-97071
No data.
OpenCVE Enrichment
Updated: 2026-10-05T10:45:21Z
-
CWE-682
Incorrect Calculation