---
id: CVE-2026-14323
title: >-
  The Printcart Web to Print Product Designer for WooCommerce plugin for
  WordPress is vulnerable to Directory Traversal in all versions up to, and
  including, 2.8.5 via the 'mockups' parameter
summary: >-
  The Printcart Web to Print Product Designer for WooCommerce plugin for
  WordPress is vulnerable to Directory Traversal in all versions up to, and
  including, 2.8.5 via the 'mockups' parameter. This makes it possible for
  unauthenticated att…
severity: high
cvss: 7.5
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'
cwe:
  - CWE-22
vendor: printcart
product: Printcart Store – Web to Print Product Designer for WooCommerce
affected:
  - store_web_to_print_product_designer_for_woocommerce <= 2.8.5
published: '2026-09-18'
updated: '2026-09-18'
sourceUpdated: '2026-09-18T15:17:05.127'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-14323'
references:
  - url: >-
      https://plugins.trac.wordpress.org/browser/printcart-integration/tags/2.5.2/includes/class.nbdesigner.php#L213
    label: security@wordfence.com
  - url: >-
      https://plugins.trac.wordpress.org/browser/printcart-integration/tags/2.5.2/includes/class.resource.php#L217
    label: security@wordfence.com
  - url: >-
      https://plugins.trac.wordpress.org/browser/printcart-integration/tags/2.5.2/includes/class.resource.php#L220
    label: security@wordfence.com
  - url: >-
      https://plugins.trac.wordpress.org/browser/printcart-integration/tags/2.5.2/includes/class.resource.php#L27
    label: security@wordfence.com
  - url: >-
      https://plugins.trac.wordpress.org/changeset?reponame=&old=3658512%40printcart-integration&new=3658512%40printcart-integration
    label: security@wordfence.com
  - url: >-
      https://www.wordfence.com/threat-intel/vulnerabilities/id/6d050a44-41ac-46ac-ba2e-406bfaebec69?source=cve
    label: security@wordfence.com
tags:
  - nvd
  - cve.org
ssvc:
  exploitation: none
  automatable: 'yes'
  technicalImpact: partial
  timestamp: '2026-09-18T14:40:07.304391Z'
epss: 0.00939
epssPercentile: 0.59346
ingestedAt: '2026-09-18T08:38:04.099Z'
---

## Overview

The Printcart Web to Print Product Designer for WooCommerce plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 2.8.5 via the 'mockups' parameter. This makes it possible for unauthenticated attackers to read the contents of arbitrary files on the server, which can contain sensitive information. A valid nonce is obtainable by unauthenticated users via the companion nbd_check_use_logged_in nopriv AJAX endpoint, which freely mints and returns a nbdesigner-get-data nonce to any visitor; additionally, if the NBDESIGNER_ENABLE_NONCE constant is disabled, even this nonce gate is bypassed entirely.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
