SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-32566

CRITICAL · CVSS 9.8 EPSS 0.45%

Source: NVD + CISA KEV + EPSS · Published 2026-08-27 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

The ACPT (Pro) - Custom Post Types Plugin for WordPress versions up to 2.0.63 is vulnerable to unauthenticated privilege escalation, allowing attackers to gain elevated permissions without authentication. This critical flaw poses a significant risk to WordPress sites using the affected plugin, potentially leading to unauthorized access and control over site content. WordPress administrators and website owners utilizing this plugin should prioritize immediate updates to mitigate the risk.

CVE
CVE-2026-32566
Severity
CRITICAL
CVSS
9.8
EPSS
0.45%
WordPress

Original NVD Description

Unauthenticated Privilege Escalation in ACPT (Pro) - Custom Post Types Plugin for WordPress <= 2.0.63 versions.