A vulnerability was found in FacturaONE para WooCommerce con VeriFactu Plugin up to 5.36 on WordPress. It has been declared as critical. The impacted element is an unknown function. Executing a manipulation can lead to code injection.
This vulnerability appears as CVE-2026-14289. The attack may be performed from remote. There is no available exploit.
It is recommended to upgrade the affected component.