CVE-2026-84238: Yith Request A Quote For Woocommerce Premium

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

Unauthenticated Broken Access Control in YITH Request a Quote for WooCommerce Premium < 4.46.0 versions.

Affected products

  • Yith Yith Request A Quote For Woocommerce Premium: before 4.46.0 (fixed in 4.46.0)

Published 2026-09-03. Last modified 2026-09-07.