Access Control Vulnerability in VillaTheme HAPPY for WordPress
CVE-2026-39593
6.5MEDIUM
What is CVE-2026-39593?
The VillaTheme HAPPY plugin for WordPress contains a missing authorization flaw that allows unauthorized access due to incorrectly configured access control security levels. This vulnerability may permit attackers to gain access to restricted functionalities or sensitive data, posing a risk to the integrity and privacy of user information.
Affected Version(s)
HAPPY <= 1.0.10