Authorization Flaw in PublishPress Authors by PublishPress
CVE-2026-25330
4.3MEDIUM
What is CVE-2026-25330?
The PublishPress Authors plugin for WordPress has a vulnerability that stems from missing authorization controls, which allows unauthorized users to potentially escalate their privileges. This flaw may lead to inappropriate access and manipulation of functionalities intended for authorized users only. The vulnerability is present in versions up to and including 4.10.1, affecting the integrity of access control security levels within the plugin.
Affected Version(s)
PublishPress Authors 0 <= 4.10.1