CyberRota Analysis
AI-GeneratedHide My WP Ghost versions up to 7.0.06 are vulnerable to broken authentication, allowing unauthorized access to subscriber accounts. This could lead to account takeover and potential data exposure. Organizations using this plugin should prioritize immediate updates to mitigate the risk of exploitation.
CVE
CVE-2026-59546
Severity
HIGH
CVSS
7.4
EPSS
0.36%
Original NVD Description
Subscriber Broken Authentication in Hide My WP Ghost <= 7.0.06 versions.