Back to FeedIntel Vault / Permanent Record
[ARCHIVE]2026-06-06T06:00:28.595036+00:00
CVE-2026-8839

CVE-2026-8839

Executive Summary

The MapPress Maps for WordPress plugin for WordPress is vulnerable to Authorization Bypass Through User-Controlled Key in all versions up to, and including, 2.96.6. This is due to missing ownership verification in the REST API routes registered via MappressApi::restapiinit, where the GET /wp-json/ma...

Deep analysis unavailable for this source.

View Original SourceClassification: Open