Feed/CVE-2026-14185
CVE-2026-14185MEDIUMCVSS 4.3

CVE-2026-14185

Published Jul 21, 2026·Updated Jul 21, 2026

NVD Description

The WPBot WordPress plugin before 8.2.0 does not perform a capability or nonce check in one of its retrieval-augmented-generation settings handlers, allowing authenticated users with subscriber-level access to modify the WPBot WordPress plugin before 8.2.0's configuration.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free