AUGUST 22, 2026
Live Feed
Back to database
Case File

CVE-2026-59520

MEDIUM · CVSS 4.3 EPSS 0.10%

Source: NVD + CISA KEV + EPSS · Published 2026-07-05 · Last synced 2026-08-04

CyberRota Analysis

AI-Generated

CrawlWP SEO versions up to 3.0.16 are vulnerable to a Cross-Site Request Forgery (CSRF) attack, which could allow an attacker to perform unauthorized actions on behalf of authenticated users. This vulnerability poses a medium risk, particularly for web administrators and users who manage sensitive data through the affected plugin. Organizations using this plugin should prioritize applying updates or implementing mitigations to safeguard against potential exploitation.

CVE
CVE-2026-59520
Severity
MEDIUM
CVSS
4.3
EPSS
0.10%

Original NVD Description

Cross-Site Request Forgery (CSRF) vulnerability in properfraction CrawlWP SEO allows Cross Site Request Forgery. This issue affects CrawlWP SEO: from n/a through 3.0.16.