CVE-2026-3396: WCAPF WooCommerce Ajax Product Filter - SQL Injection

No probes matching CVE-2026-3396 reached HoneyLabs sensors in the last 7 days. The vulnerability is rated HIGH.

Request paths we match on

  • /wp-content/plugins/wc-ajax-product-filter/readme.txt
  • /shop/?filter_post_author=1%27%20AND%20SLEEP(6)%20AND%20%271%27%3D%271

Activity is tracked continuously. The CVE tracker lists everything probed in the last 7 days.

CVE report

CVE report

Open a specific CVE from the CVE tracker.