Unauthenticated Broken Access Control in GiveWP by WordPress
CVE-2026-73349
5.3MEDIUM
What is CVE-2026-73349?
The vulnerability in GiveWP affects versions prior to 4.16.6, allowing unauthenticated users to exploit broken access control mechanisms. This issue can lead to unauthorized actions within the platform, potentially compromising sensitive data and user interactions. It emphasizes the necessity for timely updates to mitigate risks associated with unapproved access and data exposure.
Affected Version(s)
GiveWP < 4.16.6