Search
Search Results (1 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2026-53738 | 3 Copy-delete-posts, Inisev, Wordpress | 3 Duplicate Post, Copy & Delete Posts, Wordpress | 2026-06-11 | 8.1 High |
| Copy & Delete Posts through 1.5.4 lets any plugin-enabled non-admin role invoke every operation in the cdp_action_handling AJAX handler. Attackers with an enabled role can delete posts or overwrite plugin settings via the f parameter, bypassing per-function capability checks. | ||||
Page 1 of 1.