Broken Access Control Vulnerability in Motors Plugin by WordPress
CVE-2026-39515
6.5MEDIUM
What is CVE-2026-39515?
The Motors Plugin for WordPress versions prior to 1.4.107 contains a broken access control issue that allows unauthorized users to access restricted features or data. This vulnerability poses potential risks for site owners, as it can lead to unauthorized actions being performed by users without proper permissions. It is crucial for users of the Motors Plugin to promptly update to the latest version to mitigate these risks.
Affected Version(s)
Motors < 1.4.107