SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-84756

HIGH · CVSS 7.1 EPSS 0.21%

Source: NVD + CISA KEV + EPSS · Published 2026-09-03 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

WCFM Membership versions up to 2.11.11 are susceptible to a privilege escalation vulnerability that allows unauthorized users to gain elevated access rights. This could lead to unauthorized actions within the application, potentially compromising sensitive data and user accounts. Organizations utilizing this plugin should prioritize immediate remediation to mitigate the risk of exploitation.

CVE
CVE-2026-84756
Severity
HIGH
CVSS
7.1
EPSS
0.21%

Original NVD Description

Subscriber Privilege Escalation in WCFM Membership <= 2.11.11 versions.