Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
WordPress Plugin Rejected User Feedback Not Displayed
CVE-2026-27527
Summary
A vulnerability in a WordPress plugin allows an attacker to manipulate user feedback on an installation. This could lead to fake reviews and ratings being displayed, potentially damaging the reputation of a website. Website administrators should update the plugin to the latest version to prevent exploitation.
Original title
Rejected reason: Not used
Original description
Rejected reason: Not used
Published: 21 Feb 2026 · Updated: 12 Mar 2026 · First seen: 6 Mar 2026