Sensitive Data Exposure in Ads by WPQuads Plugin
CVE-2026-54824

7.5HIGH

Key Information:

Vendor

WordPress

Vendor
CVE Published:
26 June 2026

What is CVE-2026-54824?

The Ads by WPQuads plugin for WordPress versions 3.0.3 and earlier is vulnerable to unauthenticated sensitive data exposure, allowing attackers to gain access to confidential information without proper authentication. This can lead to unauthorized data access and potential breaches in user privacy.

Affected Version(s)

Ads by WPQuads <= 3.0.3

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

HaiND | Patchstack Bug Bounty Program
.