CVE-2026-106095

CVE-2026-106095 published: The Code Snippets WordPress plugin before 3.10.0 does not perform a capability check on one of its snippet-management actions and derives the network scope of the targeted snippet from the request instead of from the stored record, allowing an administrator...

View full NVD advisory → ← Back to CVE watch