VYPR
Medium severity4.3NVD Advisory· Published Mar 13, 2026· Updated Apr 22, 2026

CVE-2026-32456

CVE-2026-32456

Description

Cross-Site Request Forgery (CSRF) vulnerability in Janis Elsts Admin Menu Editor admin-menu-editor allows Cross Site Request Forgery.This issue affects Admin Menu Editor: from n/a through <= 1.14.1.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

CSRF vulnerability in Admin Menu Editor plugin for WordPress up to version 1.14.1 allows attackers to force privileged users to perform unintended actions.

The Admin Menu Editor WordPress plugin, versions ≤ 1.14.1, contains a Cross-Site Request Forgery (CSRF) vulnerability. This flaw allows an attacker to trick an authenticated administrator into executing unintended actions without their consent, bypassing the usual request validation mechanisms [1].

AI Insight generated on May 18, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.