PatchSiren

radius314 CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM radius314 CVE published 2026-09-19

CVE-2026-4792

The Bread plugin for WordPress has an information exposure vulnerability in versions up to and including 2.9.12 due to insufficient authentication and authorization checks on the settings export functionality. This allows unauthenticated attackers to retrieve the PDF protection password by accessing a specific endpoint. The vulnerability is caused by the lack of authentication and authorization checks on [truncated]