Unrated severityNVD Advisory· Published Oct 11, 2026
CVE-2026-106029
CVE-2026-106029
Description
The WeddingCity Lite WordPress plugin through 1.0.4 does not perform any authorisation or validity checks before deleting posts, pages and media attachments, allowing unauthenticated attackers to permanently delete arbitrary content site-wide.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <=1.0.4
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.