Boletines de Vulnerabilidades

CVE-2026-10530

   
Software afectado WORDPRESS
 
The Pie Register WordPress plugin before 3.8.4.10 does not use sufficiently random values when generating its account verification tokens, allowing unauthenticated attackers to predict a valid token and activate an account without access to the associated email inbox.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-10530