Nxploited[verified]@NxploitedExploit
The tweet announces mass exploitation of CVE‑2026‑27542 and CVE‑2026‑27540, links to a GitHub repo likely containing PoC/exploit code, and implies active abuse in the wild.
pdnuclei-bot@pdnuclei_botDisclosure
A Twitter post announces a critical unauthenticated privilege escalation vulnerability (CVE-2026-27542) in WooCommerce Wholesale Lead Capture versions <=2.0.3.1, with a link to a Project Discovery page for more information.
CTIWatch@ctiwatchcloudActive Exploitation
CVE-2026-27542 has been reported as actively exploited in the wild with a high CVSS score, although no patch or PoC details are shared in the tweet.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The text announces CVE-2026-27542, indicating an incorrect privilege assignment flaw in Woocommerce Wholesale Lead Capture through version 2.0.3.1.
The Hacker Wire@TheHackerWireDisclosure
The message announces a newly identified privilege‑escalation vulnerability (CVE‑2026‑27542) in Woocommerce Wholesale Lead Capture, providing basic technical details but no proof‑of‑concept, exploit code, or patch information.
CVEFind.com@CveFindComDisclosure
The text announces a critical privilege escalation vulnerability targeting the Woocommerce Wholesale Lead Capture plugin up through version 2.0.3.1, offering no proof of concept, exploitation details, or patch information.
CVE@CVEnewDisclosure
The post announces CVE-2026-27542 as an Incorrect Privilege Assignment flaw in Woocommerce Wholesale Lead Capture enabling privilege escalation, with no PoC, exploit, patch, or active exploitation details provided.
0day Signal@0dayPublishingDisclosure
CVE-2026-27542 is a severe privilege‑escalation vulnerability in WooCommerce Wholesale, allowing unauthenticated users to obtain admin rights with zero interaction and a CVSS score of 9.8.