A vulnerability was found in devitemsllc ShopLentor Plugin up to 3.4.5 on WordPress. It has been classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation of the argument optionSection leads to improper control of resource identifiers.

This vulnerability is documented as CVE-2026-16797. The attack can be initiated remotely. There is not any exploit available.