CVE-2026-57664: Villatheme Bopo – Woocommerce Product Bundle Builder

Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.

Unauthenticated Sensitive Data Exposure in Bopo – WooCommerce Product Bundle Builder <= 1.1.6 versions.

Affected products

  • Villatheme Bopo – Woocommerce Product Bundle Builder: up to and including 1.1.6

Published 2026-06-26. Last modified 2026-06-26.