CVE-2026-93548

CVE-2026-93548 published: The FooSales WordPress plugin before 1.43.3 does not verify that an authenticated caller is entitled to act as the user a request names, allowing any authenticated user to have the FooSales WordPress plugin before 1.43.3 act as an arbitrary other user, in...

View full NVD advisory → ← Back to CVE watch