Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Yzx001

#41632of 57,468
7.2Total CVSS
Vulnerabilities · 1
PT-2026-95930
7.2
2026-09-20
WordPress · Export/Import Users/Customers · CVE-2026-92540
**Name of the Vulnerable Software and Affected Versions** Import and export users and customers versions prior to 2.5.2 **Description** Insufficient enforcement of the `promote users` capability during CSV imports allows users who possess only the `create users` capability to create new administrator accounts or elevate existing users to the administrator role. **Recommendations** Update Import and export users and customers to version 2.5.2 or later.