MEDIUM
Ruben Garcia
CVE published 2026-05-25
CVE-2026-24546
A Missing Authorization vulnerability (CWE-862) in the GamiPress WordPress plugin allows exploitation of incorrectly configured access control security levels. The vulnerability affects GamiPress versions from n/a through 7.6.3. The issue was published on 2026-05-25 and modified on 2026-05-26. No known exploitation in the wild or ransomware campaign use has been reported. The vendor attribution is current [truncated]