VYPR

Freeton WP

by WordPress

CVEs (1)

  • CVE-2026-84737Oct 11, 2026
    risk 0.00cvss —epss —

    The Freeton WP WordPress plugin through 1.0.0 does not correctly validate the activation code when authenticating a user, allowing unauthenticated attackers to log in as any user whose email address they know, including administrators.