Medium severity5.4NVD Advisory· Published Aug 10, 2026· Updated Aug 12, 2026
CVE-2026-66642
CVE-2026-66642
Description
Cross-Site Request Forgery (CSRF) vulnerability in WP Umbrella allows Cross Site Request Forgery.
This issue affects WP Umbrella: from 2.24.2 through 2.26.2.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: 2.24.2 - 2.26.2
Patches
Vulnerability mechanics
References
2News mentions
2- Wordfence Intelligence Weekly WordPress Vulnerability Report (August 10, 2026 to August 16, 2026)Wordfence Blog · Aug 21, 2026
- WordPress Plugins: 25 Vulnerabilities Disclosed in Single-Day Batch, Affecting Multiple Core FunctionsVypr Intelligence · Aug 10, 2026