VYPR

REST API Log

by WordPress

CVEs (1)

  • CVE-2026-16547Aug 4, 2026
    risk 0.00cvss epss 0.00

    The REST API Log WordPress plugin before 1.7.1 does not bind the token protecting its log download feature to the log entry being requested, nor does it check the capability of the requester, allowing unauthenticated users in possession of any such token to download the logged…