Missing Authorization Vulnerability in Mailercloud's Webform Integration
CVE-2026-39713
Currently unrated
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 8 April 2026
What is CVE-2026-39713?
A missing authorization vulnerability exists in Mailercloud's integration plugin, which allows attackers to exploit incorrectly configured access control measures. This issue impacts versions of the plugin up to and including 1.0.7, potentially allowing unauthorized access to sensitive functionalities related to webforms and contact synchronization.
Affected Version(s)
Mailercloud – Integrate webforms and synchronize website contacts 0 <= 1.0.7