PT-2026-65394 · WordPress · Tablesome Table
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Tablesome Table versions prior to 1.1.31
Description
An issue exists where the plugin fails to perform authentication, capability, or nonce checks in an AJAX action. This allows unauthenticated users to create new published posts or overwrite existing posts and pages.
Recommendations
Update Tablesome Table to version 1.1.31 or later.
Exploit
Fix
Missing Authorization
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Tablesome Table