Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

WordPress Plugin 'WP Recent Comments' Allows Unauthenticated Comment Insertion

MINI-7jm6-vg43-45p2
Summary

The WP Recent Comments plugin for WordPress allows an attacker to insert malicious comments without needing a login. This could lead to spam or malicious content on your website. To protect your website, update the plugin to the latest version or remove it if no longer needed.

What to do
  • Update external-secrets-operator-fips to version 2.1.0-r0.
Affected software
VendorProductAffected versionsFix available
– external-secrets-operator-fips <= 2.1.0-r0 2.1.0-r0
Original title
MINI-7jm6-vg43-45p2
Published: 10 Mar 2026 · Updated: 13 Mar 2026 · First seen: 10 Mar 2026