SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-73386

HIGH · CVSS 7.5 EPSS 0.24%

Source: NVD + CISA KEV + EPSS · Published 2026-08-19 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

Versions of the Track Geolocation Of Users plugin for Contact Form 7 prior to 3.0.2 are vulnerable to unauthenticated sensitive data exposure, allowing attackers to access potentially sensitive user information without authentication. This vulnerability poses a significant risk to user privacy and data integrity, making it critical for web administrators using this plugin to prioritize updates to mitigate potential exploitation. Organizations that rely on this plugin for user interactions should take immediate action to secure their systems.

CVE
CVE-2026-73386
Severity
HIGH
CVSS
7.5
EPSS
0.24%

Original NVD Description

Unauthenticated Sensitive Data Exposure in Track Geolocation Of Users Using Contact Form 7 <= 3.0.2 versions.