Boletines de Vulnerabilidades

CVE-2026-1900

   
Software afectado WORDPRESS
 
The Link Whisper Free WordPress plugin before 0.9.1 has a publicly accessible REST endpoint that allows unauthenticated settings updates.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-1900