Feed/CVE-2026-19699
CVE-2026-19699LOWCVSS 2.7

CVE-2026-19699

Published Aug 20, 2026·Updated Aug 20, 2026

NVD Description

The GutenKit WordPress plugin before 2.5.0 does not have a sufficient capability check on some of its REST API endpoints, allowing users with the Contributor role and above to retrieve mailing-list audience metadata from the site's connected marketing account.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free