ExploitMatch
Back

CVE-2026-75793

Monitor on ThreatCluster

Description

The SureCart WordPress plugin before 4.7.0 does not consult the site's user registration setting before creating WordPress accounts, allowing unauthenticated users to create an account and receive a logged-in session even when registration is disabled.