Medium severity5.8NVD Advisory· Published Mar 31, 2026· Updated Jun 17, 2026
CVE-2026-3881
CVE-2026-3881
Description
The Performance Monitor WordPress plugin through 1.0.6 does not validate a parameter before making a request to it, which could allow unauthenticated users to perform SSRF attacks
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2<=1.0.6+ 1 more
- (no CPE)range: <=1.0.6
- (no CPE)
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.