High severity8.8NVD Advisory· Published Nov 18, 2021· Updated Jun 17, 2026
CVE-2021-36909
CVE-2021-36909
Description
Authenticated Database Reset vulnerability in WordPress WP Reset PRO Premium plugin (versions <= 5.98) allows any authenticated user to wipe the entire database regardless of their authorization. It leads to a complete website reset and takeover.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- WebFactory Ltd./WP Reset PROv5Range: <= 5.98
- Range: <=5.98
Patches
Vulnerability mechanics
References
3- patchstack.com/wp-reset-pro-critical-vulnerability-fixed/nvdExploitThird Party Advisory
- patchstack.com/database/vulnerability/wp-reset/wordpress-wp-reset-pro-premium-plugin-5-98-authenticated-database-reset-vulnerabilitynvdThird Party Advisory
- wpreset.com/changelog/nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.