CVE-2026-0926 | Prodigy Commerce Plugin up to 3.2.9 on WordPress parameters[template_name] file inclusion
A vulnerability was found in Prodigy Commerce Plugin up to 3.2.9 on WordPress. It has been declared as critical. This affects an unknown part. The manipulation of the argument parameters[template_name] results in file inclusion.
This vulnerability is known as CVE-2026-0926. It is possible to launch the attack remotely. No exploit is available.