The CVE-2024-37496 vulnerability affects the Metro Magazine theme, allowing attackers to exploit incorrectly configured access control security levels due to missing authorization. This issue has a CVSS score of 4.3 and is classified as MEDIUM severity. The vulnerability impacts versions from n/a through 1.3.7 of the Metro Magazine theme. Users should update to a patched version to mitigate potential risks.
CVE-2026-40809 is a MEDIUM severity vulnerability in Metro Magazine, a WordPress theme developed by Rara Themes. This issue, published on June 16, 2026, allows Exploiting Incorrectly Configured Access Control Security Levels due to a Missing Authorization vulnerability. The vulnerability affects Metro Magazine versions from n/a through 1.4.1.