CyberRota Analysis
AI-GeneratedWP Compress versions up to 7.21.28 are vulnerable to an unauthenticated settings change, allowing attackers to modify configurations without authentication. This could lead to unauthorized access or manipulation of site settings, potentially compromising the integrity and security of affected websites. Organizations using WP Compress should prioritize remediation to mitigate the risk of exploitation.
CVE
CVE-2026-84757
Severity
HIGH
CVSS
8.2
EPSS
0.22%
Original NVD Description
Unauthenticated Settings Change in WP Compress <= 7.21.28 versions.