SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-66595

MEDIUM · CVSS 5.9 EPSS 0.24%

Source: NVD + CISA KEV + EPSS · Published 2026-08-20 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

Versions of WP Data Access up to 5.5.80 are vulnerable to unauthenticated broken access control, allowing unauthorized users to access sensitive data or perform restricted actions. This vulnerability poses a medium risk, particularly for organizations using affected versions that handle sensitive information or rely on data management functionalities. Administrators and security teams should prioritize patching or mitigating this issue to safeguard their data integrity and access controls.

CVE
CVE-2026-66595
Severity
MEDIUM
CVSS
5.9
EPSS
0.24%

Original NVD Description

Unauthenticated Broken Access Control in WP Data Access <= 5.5.80 versions.