SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-59546

HIGH · CVSS 7.4 EPSS 0.36%

Source: NVD + CISA KEV + EPSS · Published 2026-07-27 · Last synced 2026-08-26

CyberRota Analysis

AI-Generated

Hide My WP Ghost versions up to 7.0.06 are vulnerable to broken authentication, allowing unauthorized access to subscriber accounts. This could lead to account takeover and potential data exposure. Organizations using this plugin should prioritize immediate updates to mitigate the risk of exploitation.

CVE
CVE-2026-59546
Severity
HIGH
CVSS
7.4
EPSS
0.36%

Original NVD Description

Subscriber Broken Authentication in Hide My WP Ghost <= 7.0.06 versions.