Vulnerability Bulletins

CVE-2026-1900

   
Affected software WORDPRESS
 
The Link Whisper Free WordPress plugin before 0.9.1 has a publicly accessible REST endpoint that allows unauthenticated settings updates.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-1900