A vulnerability classified as critical was found in WP Helper Premium Plugin up to 4.7.5 on WordPress. The affected element is an unknown function of the component Order Confirmation Page Module . The manipulation results in authorization bypass. This vulnerability is known as CVE-2026-18945 . It is possible to launch the attack remotely. No exploit is available. Upgrading the affected component is advised.