CyberRota Yorumu
Saldırganın giriş yapmış olması gerekebilir.
CVE
CVE-2026-13432
Severity
MEDIUM
CVSS
5.4
EPSS
%0.13
WordPress
Orijinal NVD Açıklaması
The ThumbPress WordPress plugin before 6.2.2 does not perform a capability check on one of its AJAX actions, allowing authenticated users with subscriber-level access or higher to deactivate the ThumbPress WordPress plugin before 6.2.2, disrupting the site's image-handling functionality.