SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-78466

UNKNOWN · CVSS N/A

Source: NVD + CISA KEV + EPSS · Published 2026-08-25 · Last synced 2026-09-20

CyberRota Analysis

AI-Generated

The Fluent Boards Pro plugin for WordPress is susceptible to Insecure Direct Object Reference due to inadequate validation of user-controlled keys, affecting all versions up to 2.0.11. This vulnerability allows authenticated attackers with Subscriber-level access or higher to execute unauthorized actions, potentially compromising user data or site integrity. WordPress site administrators using this plugin should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-78466
Severity
UNKNOWN
CVSS
N/A
EPSS
N/A

Original NVD Description

Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-78278. Reason: This candidate is a reservation duplicate of CVE-2026-78278. Notes: All CVE users should reference CVE-2026-78278 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.