Unauthenticated Privilege Escalation in TranslatePress from WordPress
CVE-2026-78267
9.8CRITICAL
What is CVE-2026-78267?
The TranslatePress plugin for WordPress is susceptible to an unauthenticated privilege escalation flaw in versions up to 3.3.2. This vulnerability allows unauthorized users to exploit the plugin, potentially leading to unauthorized actions and adjustments in user permissions. It's critical for users of TranslatePress to update to a patched version to safeguard their websites from potential exploitation.
Affected Version(s)
TranslatePress <= 3.3.2