Feed/CVE-2026-14195
CVE-2026-14195LOWCVSS 2.7

CVE-2026-14195

Published Aug 1, 2026·Updated Aug 5, 2026

NVD Description

The Brizy WordPress plugin before 2.8.18 does not properly verify authorization on a request handler before returning post content, allowing users with the Contributor role or higher to read the content of arbitrary posts, including other users' private, pending, and draft posts.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free