Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
WordPress Users Affected by Missing Configuration Check
CVE-2026-27532
Summary
If not properly configured, WordPress users may be vulnerable to unauthorized actions. This occurs when the plugin or theme does not check a user's permissions before allowing certain actions. To prevent this, ensure you configure your plugins and themes correctly and keep them up to date.
Original title
Rejected reason: Not used
Original description
Rejected reason: Not used
Published: 21 Feb 2026 · Updated: 12 Mar 2026 · First seen: 6 Mar 2026