MEDIUM
nmerii
CVE published 2026-04-08
CVE-2026-39588
The CVE-2026-39588 vulnerability is a Missing Authorization issue in the NM Gift Registry and Wishlist Lite plugin for WordPress, allowing attackers to exploit incorrectly configured access control security levels. This issue affects the plugin from n/a through version 5.13. The vulnerability has a CVSS score of 5.3 and a MEDIUM severity level. The CVSS vector is CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A [truncated]