Medium severity4.3NVD Advisory· Published Jul 1, 2026· Updated Jul 1, 2026
CVE-2026-11562
CVE-2026-11562
Description
The WS Form LITE WordPress plugin before 1.11.8 does not have a capability check on one of its settings-update actions, allowing authenticated users with subscriber-level access and above to modify the WS Form LITE WordPress plugin before 1.11.8's settings.
Affected products
1- Range: <1.11.8
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.