A vulnerability was found in Welcart e-Commerce Plugin up to 2.11.32 on WordPress and classified as problematic. This impacts an unknown function of the component Settlement Callback. The manipulation results in insufficient verification of data authenticity.

This vulnerability is known as CVE-2026-15213. It is possible to launch the attack remotely. No exploit is available.

It is suggested to upgrade the affected component.