Unauthenticated Bypass in Captcha Code Plugin by WordPress
CVE-2026-94457
4.8MEDIUM
What is CVE-2026-94457?
The Captcha Code plugin for WordPress, in versions up to 3.32, suffers from an unauthenticated bypass vulnerability. This flaw allows unauthorized users to circumvent captcha protection mechanisms, potentially enabling malicious actors to exploit other security measures within a website. Website administrators are strongly advised to update the plugin to secure their sites against potential intrusions.
Affected Version(s)
Captcha Code <= 3.32