CyberRota
← Ana sayfaya dön

CVE-2026-15260

UNKNOWN · CVSS N/A

Kaynak: NVD + CISA KEV + EPSS · Yayınlanma: 2026-08-03T07:16:40.090 · Çekilme zamanı: 2026-08-03T12:07:32.761914+00:00

CyberRota Yorumu

Detaylı analiz gerekiyor.

CVE
CVE-2026-15260
Severity
UNKNOWN
CVSS
N/A
EPSS
Yok
WordPress

Orijinal NVD Açıklaması

The GEO my WP WordPress plugin before 4.5.5.3 does not perform any ownership or capability check on two of its logged-in AJAX actions, allowing users with subscriber-level access or above to modify or permanently delete other users' and posts' geolocation records by supplying arbitrary record IDs.