[ARCHIVE]2026-06-06T06:00:28.595036+00:00
CVE-2026-8839
Executive Summary
The MapPress Maps for WordPress plugin for WordPress is vulnerable to Authorization Bypass Through User-Controlled Key in all versions up to, and including, 2.96.6. This is due to missing ownership verification in the REST API routes registered via MappressApi::restapiinit, where the GET /wp-json/ma...
Deep analysis unavailable for this source.
View Original SourceClassification: Open