Datalogics Ecommerce Delivery – Datalogics <= 2.6.62 - Unauthenticated Privilege Escalation
critical
The Datalogics Ecommerce Delivery – Datalogics plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 2.6.62 This makes it possible for unauthenticated attackers to elevate their privileges to that of an administrator.
- CVSS:
- 9.8
- Affected:
- up to 2.6.62
- Fixed in:
- 2.6.63
- Disclosed:
- Apr 8, 2026
CVE-2026-39583 on NVD →
Datalogics Ecommerce Delivery - Unauthenticated Privilege Escalation vulnerability
critical
Unauthenticated Privilege Escalation vulnerability
- CVSS:
- 9.8
- Affected:
- up to 2.6.60
- Fixed in:
- 2.6.60
- Disclosed:
- Mar 12, 2026
Datalogics Ecommerce Delivery – Datalogics < 2.6.60 - Unauthenticated Privilege Escalation
critical
The Datalogics Ecommerce Delivery – Datalogics plugin for WordPress is vulnerable to privilege escalation in all versions up to 2.6.60 (exclusive). This makes it possible for unauthenticated attackers to elevate their privileges to that of an administrator.
- CVSS:
- 9.8
- Affected:
- up to 2.6.60
- Fixed in:
- 2.6.60
- Disclosed:
- Mar 12, 2026
CVE-2026-2631 on NVD →
Protect your WordPress site
Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.
Scan your site free
← Back to the vulnerability database