Authentication Bypass Vulnerability in Dokan Plugin by Dokan, Inc.
CVE-2026-24359
8.8HIGH
What is CVE-2026-24359?
The Dokan dokan-lite plugin for WordPress contains an authentication bypass vulnerability that allows unauthorized access by exploiting alternative paths or channels. This issue is present in versions up to 4.2.4, potentially allowing attackers to exploit authentication mechanisms, leading to abuse and unauthorized actions within the WordPress environment.
Affected Version(s)
Dokan 0 <= 4.2.4