Mehrere Schwachstellen (CVE-2025-41771, CVE-2026-15826, CVE-2026-73633, CVE-2026-73634, CVE-2026-73635) in Takeover
Autor: Do Son
CVE-2026-15826 (CVSS 9.8) is a User Profile Builder vulnerability letting attackers log in as WordPress admin. Over 40,000 sites affected; update to 3.16.5
Related Posts:
Apache Struts Patches Five Flaws Including Unauthenticated DoS Bugs
Roundcube Patches RCE and SSRF Flaws in 1.6.18 and 1.7.3
CVE-2025-41771: SQL Injection Flaw Hits Phoenix Contact PLCnext
The post CVE-2026-15826: User Profile Builder Bug Under Active Attack, Grants Full Admin Takeover (CVSS 9.8) appeared first on Daily CyberSecurity.
Quelle: securityonline.info