Vulnerabilità ed exploit · Attacco ad app web

Vulnerabilità Plugin Consente Creazione di Account Admin WordPress

Questo permette a un attaccante di ottenere un account admin senza autenticazione.

1 fonte · 5 mar

CVE-2026-1492

NVD KEV

CVSS 9.8 CRITICAL: the User Registration & Membership – Custom Registration Form Builder, Custom Login Form, User Profile, Content… EPSS 28% (98º percentile).

Cronologia

Fonti

Part of the PlainSec briefing for 2026-03-06

Every edition of this story: Vulnerabilità Plugin Consente Creazione di Account Admin WordPress

Altro da oggi