CyberRota
← Ana sayfaya dön

CVE-2026-13432

MEDIUM · CVSS 5.4 EPSS %0.13

Kaynak: NVD + CISA KEV + EPSS · Yayınlanma: 2026-07-20T07:16:35.783 · Çekilme zamanı: 2026-07-21T06:06:23.246440+00:00

CyberRota Yorumu

Saldırganın giriş yapmış olması gerekebilir.

CVE
CVE-2026-13432
Severity
MEDIUM
CVSS
5.4
EPSS
%0.13
WordPress

Orijinal NVD Açıklaması

The ThumbPress WordPress plugin before 6.2.2 does not perform a capability check on one of its AJAX actions, allowing authenticated users with subscriber-level access or higher to deactivate the ThumbPress WordPress plugin before 6.2.2, disrupting the site's image-handling functionality.