Unrated severityNVD Advisory· Published Sep 9, 2026
CVE-2026-85132
CVE-2026-85132
Description
The WPLP Cookie Consent WordPress plugin before 4.4.2 does not perform nonce or capability checks on one of its cookie scanner AJAX actions, allowing any authenticated user, such as a subscriber, to read back the automated scan schedule the administrator configured.
Affected products
2<4.4.2+ 1 more
- (no CPE)range: <4.4.2
- (no CPE)range: <4.4.2
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.