OCTOBER 6, 2026
Live Feed
Back to database
Case File

CVE-2026-104405

HIGH · CVSS 8.1 EPSS 0.28%

Source: NVD + CISA KEV + EPSS · Published 2026-10-06 · Last synced 2026-10-06

CyberRota Analysis

AI-Generated

Versions of GiveWP up to 4.17.0 are vulnerable to an unauthenticated privilege escalation flaw, allowing attackers to gain elevated permissions without proper authentication. This vulnerability poses a significant risk to the integrity of systems using the affected software, potentially enabling unauthorized access to sensitive data and functionalities. Organizations utilizing GiveWP should prioritize immediate updates to mitigate this high-severity threat.

CVE
CVE-2026-104405
Severity
HIGH
CVSS
8.1
EPSS
0.28%

Original NVD Description

Unauthenticated Privilege Escalation in GiveWP <= 4.17.0 versions.