Missing Authorization Vulnerability in Metagauss RegistrationMagic Plugin
CVE-2026-32385
5.4MEDIUM
What is CVE-2026-32385?
The Metagauss RegistrationMagic plugin features a missing authorization vulnerability that allows unauthorized users to exploit improperly configured access control security levels. This issue affects versions of RegistrationMagic up to 6.0.7.6, enabling potential attackers to bypass restrictions and access sensitive functionalities within the custom registration form builder. Users are strongly advised to update to the latest version to mitigate this risk.
Affected Version(s)
RegistrationMagic 0 <= 6.0.7.6