A Server-Side Request Forgery (SSRF) vulnerability exists in the Hide My WP Ghost plugin, affecting versions from n/a through 7.0.09. This issue allows for Server Side Request Forgery. The vulnerability has a high CVSS score of 7.2, indicating a significant risk. Defenders should assess the potential impact and verify exposure to this vulnerability. The CVE record and NVD entry provide limited information [truncated]
A HIGH severity vulnerability, CVE-2026-59546, was found in the Hide My WP Ghost plugin, affecting versions up to 7.0.06. This vulnerability involves Subscriber Broken Authentication, which could lead to potential authentication issues. Users of Hide My WP Ghost plugin versions up to 7.0.06 should apply patches immediately to prevent potential authentication issues. The vulnerability has a CVSS score of 7 [truncated]
CVE-2026-39484 is an Open Redirect vulnerability in the Hide My WP Ghost plugin, potentially allowing phishing attacks. The issue affects Hide My WP Ghost versions from n/a through < 7.0.00. A CVSS score of 4.7 (MEDIUM) was assigned. Users of affected versions should apply updates to mitigate the vulnerability. The vulnerability allows attackers to redirect users to untrusted sites, potentially leading to [truncated]