Feed/CVE-2026-3143
CVE-2026-3143MEDIUMCVSS 5.3

CVE-2026-3143

Published May 1, 2026·Updated Jun 17, 2026

NVD Description

The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'wp_ajax_cli_cancel' function in all versions up to, and including, 1.17.1. This makes it possible for unauthenticated attackers to cancel a pending rollback, potentially preventing a WordPress installation from automatically reverting a failed update.

Public Exploits & PoCs11 found

[POC] CVE-2026-31431 — page_inject

CVE-2026-31431-killed page-cache exploit — code exec into containers sharing the same image layer

6

[POC] CVE-2026-31431 — vcheck

Vulnerability detection and mitigation tool for Copy Fail and Dirty Frag bugs (CVE-2026-31431, CVE-2026-43284, CVE-2026-43500)

2

[POC] CVE-2026-31431 — cve-2026-31431-copyfail

CVE-2026-31431 Copy Fail - LPE no kernel Linux

2

[POC] CVE-2026-31431 — copy-fail-CVE-2026-31431-detection-probe

Safe detection tooling for CVE-2026-31431 "Copy Fail" — a local privilege escalation in the Linux kernel's algif_aead module affecting all major distributions since 2017.

2

[POC] CVE-2026-31431 — ansible-mitigate-copyfail-dirtyfrag

Simple Ansible Playbook to mitigate against CopyFail (CVE-2026-31431) and DirtyFrag (CVE-2026-43284) vulnerabilities.

2

[POC] CVE-2026-31431 — copyfail-exploit

Copy Fail (CVE-2026-31431) LPE exploit. A clean, multi-arch Python reimplementation targeting the Linux kernel AF_ALG page cache vulnerability.

2

[POC] CVE-2026-31431 — copyfail

Copy Fail (CVE-2026-31431) is a logic flaw in the Linux kernel's algif_aead module — part of the AF_ALG userspace crypto API. It was disclosed on April 29, 2026 by Theori / Xint Code.

1

[POC] CVE-2026-31431 — deny-af-alg-bpf

BPF prog to fix CVE-2026-31431

1

[POC] CVE-2026-31431 — CopyFile_CVE-2026-31431

Exploit for CVE-2026-31431 (Copy Fail)

1

[POC] CVE-2026-31431 — CVE-2026-31431-check

Read-only checker for CVE-2026-31431 (algif_aead local root). Reports kernel/module state and suggests mitigations.

1

PoC: fix-cve-2026-3143

Диагностика и исправление уязвимости CVE-2026-31431 (copy fail)

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free