HIGH
Rashid
CVE published 2026-10-10
CVE-2026-40777
A high-severity Subscriber Broken Access Control vulnerability was found in the WPSection plugin versions up to 1.5.1. This issue allows an attacker to bypass access controls, potentially leading to unauthorized actions within the plugin.