Missing Authorization in User Registration Plugin by WPEverest
CVE-2026-24353
4.3MEDIUM
What is CVE-2026-24353?
The User Registration plugin by WPEverest contains a missing authorization vulnerability that allows attackers to exploit incorrectly configured access control security levels. This issue potentially exposes sensitive user data and enables unauthorized actions in the system. This vulnerability affects versions of the User Registration plugin up to and including 4.4.9, highlighting the importance of secure configuration and regular updates to enhance the safety of user credentials and actions.
Affected Version(s)
User Registration 0 <= 4.4.9