Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
4.3

Incorrect Access Control in JAMstack Deployments for WordPress

CVE-2026-25409
Summary

A security issue in JAMstack deployments for WordPress, including crgeary's wp-jamstack-deployments, allows attackers to access data they shouldn't. This affects sites using this plugin. To fix, update to the latest version or adjust access control settings to prevent unauthorized access.

Original title
Missing Authorization vulnerability in crgeary JAMstack Deployments wp-jamstack-deployments allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects JAMstack Deplo...
Original description
Missing Authorization vulnerability in crgeary JAMstack Deployments wp-jamstack-deployments allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects JAMstack Deployments: from n/a through <= 1.1.1.
nvd CVSS3.1 4.3
Vulnerability type
CWE-862 Missing Authorization
Published: 19 Feb 2026 · Updated: 11 Mar 2026 · First seen: 6 Mar 2026