CVE-2026-1455 | Whatsiplus Scheduled Notification for Woocommerce Plugin Setting wsnfw_save_users_settings cross-site request forgery
A vulnerability was found in Whatsiplus Scheduled Notification for Woocommerce Plugin up to 1.0.1 on WordPress and classified as problematic. The affected element is the function wsnfw_save_users_settings of the component Setting Handler. Such manipulation leads to cross-site request forgery.
This vulnerability is documented as CVE-2026-1455. The attack can be executed remotely. There is not any exploit available.