Feed/CVE-2026-14197
CVE-2026-14197LOWCVSS 3.8

CVE-2026-14197

Published Aug 1, 2026·Updated Aug 5, 2026

NVD Description

The Fluent Support WordPress plugin before 2.3.1 does not perform a per-ticket access check before reassigning a ticket's customer, allowing a restricted support agent to change the assigned customer of any ticket in the system, including tickets outside their granted scope.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free