CVE-2026-76554

CVE-2026-76554 published: The WP Import Export Lite WordPress plugin before 3.9.35 does not verify that the user running an import is permitted to create or modify user accounts and assign roles, allowing users granted a delegated WP Import Export Lite WordPress plugin before 3.9.35...

View full NVD advisory → ← Back to CVE watch