CVE-2026-4123

CVE-2026-4123 published: The RW Elephant Rental Inventory plugin for WordPress is vulnerable to Missing Authorization in all versions up to and including 2.3.13. This is due to a missing capability check on the toggle_cache() function which is hooked to the wp_ajax_toggle_cache AJA...

View full NVD advisory → ← Back to CVE watch