CVE-2026-57648 is a medium-severity vulnerability in the Nelio Content plugin, affecting versions <= 4.3.4. The issue is related to broken access control, which could potentially allow unauthorized access to sensitive areas of the website. The vulnerability was published on June 26, 2026, and last modified on June 29, 2026. The CVSS score for this vulnerability is 4.3, indicating a medium severity level. [truncated]
A Server-Side Request Forgery (SSRF) vulnerability was discovered in the Nelio Content WordPress plugin. This issue, tracked as CVE-2026-39521, has a CVSS score of 4.9, indicating a medium severity level. The vulnerability affects the plugin from its inception through version 4.3.1. The SSRF vulnerability allows an attacker to manipulate server-side requests, potentially leading to unauthorized access or [truncated]