VYPR
Unrated severityNVD Advisory· Published Jul 28, 2026· Updated Jul 28, 2026

Tablesome < 1.1.31 - Unauthenticated Post Creation and Modification

CVE-2026-14924

Description

The Tablesome Table WordPress plugin before 1.1.31 does not perform any authentication, capability, or nonce checks in one of its AJAX actions, allowing unauthenticated users to create new published posts and to overwrite arbitrary existing posts and pages.

Affected products

1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.