CVE-2026-4843 | mrdollar4444 GSheet for Woo Importer Plugin up to 2.3.1 on WordPress Configuration process_ajax_restore_action authorization (efa-9427-380 / EUVD-2026-31333)
A vulnerability described as critical has been identified in mrdollar4444 GSheet for Woo Importer Plugin up to 2.3.1 on WordPress. This affects the function process_ajax_restore_action of the component Configuration Handler. The manipulation results in missing authorization.
This vulnerability is identified as CVE-2026-4843. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is recommended.