CyberRota
← Ana sayfaya dön

CVE-2026-15939

UNKNOWN · CVSS N/A

Kaynak: NVD + CISA KEV + EPSS · Yayınlanma: 2026-08-02T06:16:37.980 · Çekilme zamanı: 2026-08-02T12:05:36.422440+00:00

CyberRota Yorumu

Detaylı analiz gerekiyor.

CVE
CVE-2026-15939
Severity
UNKNOWN
CVSS
N/A
EPSS
Yok
WordPress

Orijinal NVD Açıklaması

The Simple Restrict WordPress plugin before 1.2.9 does not enforce its content-restriction permission check on the REST API the way it does on the front end, relying there on a generic capability check instead of the Simple Restrict WordPress plugin before 1.2.9's own permission system, allowing users with contributor-level access or above to read the content of restricted posts and pages they were never granted access to.