SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-81806

HIGH · CVSS 7.2 EPSS 0.16%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

The Hide My WP Ghost plugin is vulnerable to a Server-Side Request Forgery (SSRF) flaw, which could allow an attacker to manipulate server requests and potentially access sensitive internal resources. Organizations using versions up to 7.0.09 of this plugin should prioritize patching this vulnerability to mitigate the risk of unauthorized access and data exposure.

CVE
CVE-2026-81806
Severity
HIGH
CVSS
7.2
EPSS
0.16%

Original NVD Description

Server-Side Request Forgery (SSRF) vulnerability in John Darrel Hide My WP Ghost allows Server Side Request Forgery. This issue affects Hide My WP Ghost: from n/a through 7.0.09.