Feed/CVE-2026-14816
CVE-2026-14816MEDIUMCVSS 6.5

CVE-2026-14816

Published Aug 4, 2026·Updated Aug 4, 2026

NVD Description

The GDPR Framework By Data443 WordPress plugin before 2.4.0 does not properly verify authorization or the identity of the data subject when recording cookie-consent choices and privacy requests, allowing unauthenticated attackers to forge consent records for arbitrary email addresses and to flood the site's privacy-request queue with arbitrary entries.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free