SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-81796

HIGH · CVSS 7.3 EPSS 0.22%

Source: NVD + CISA KEV + EPSS · Published 2026-09-10 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

WP Travel versions up to 12.0.3 are vulnerable to unauthenticated broken authentication, allowing attackers to exploit this weakness to gain unauthorized access to user accounts. The high severity of this vulnerability (CVSS 7.3) necessitates immediate attention from organizations using affected versions to prevent potential account takeovers and data breaches. Users of WP Travel should prioritize applying security updates or implementing mitigations to safeguard their systems.

CVE
CVE-2026-81796
Severity
HIGH
CVSS
7.3
EPSS
0.22%

Original NVD Description

Unauthenticated Broken Authentication in WP Travel <= 12.0.3 versions.