Sensitive Data Exposure in Motors Plugin by StylemixThemes
CVE-2026-104399

6.9MEDIUM

Key Information:

Vendor

WordPress

Status
Vendor
CVE Published:
6 October 2026

What is CVE-2026-104399?

A vulnerability in the Motors plugin by StylemixThemes allows for the retrieval of embedded sensitive data due to improper handling of information. This flaw affects versions from n/a through 1.4.124, potentially exposing confidential user data. It is crucial for users and administrators to assess their systems and apply appropriate security measures to mitigate risks associated with this vulnerability.

Affected Version(s)

Motors <= 1.4.124

References

CVSS V4

Score:
6.9
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Ananda Dhakal | Patchstack
.