Vulnerability Bulletins |
CVE-2026-5335 |
|
| Affected software | WORDPRESS |
| The Magic Export & Import WordPress plugin before 1.2.0 stores exported CSV files at a publicly accessible location, making it possible for any visitors to leak sensitive user information. | |
Link: |
|
| https://nvd.nist.gov/vuln/detail/CVE-2026-5335 | |






