PT-2026-77116 · WordPress · Mwb Hubspot For Woocommerce

CVE-2026-73396

·

Published

2026-08-18

·

Updated

2026-08-27

CVSS v3.1

7.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H
Name of the Vulnerable Software and Affected Versions MWB HubSpot for WooCommerce versions prior to 1.6.8
Description The software contains a broken authentication mechanism that allows users with Subscriber privileges to bypass authentication requirements.
Recommendations Update MWB HubSpot for WooCommerce to version 1.6.8 or later.

Fix

Authentication Bypass Using an Alternate Path or Channel

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-73396

Affected Products

Mwb Hubspot For Woocommerce