PatchSiren

StoreApps CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH StoreApps CVE published 2026-05-25

CVE-2026-45216

CVE-2026-45216 is a HIGH severity (CVSS 8.8) Incorrect Privilege Assignment vulnerability in StoreApps Smart Manager, a WordPress plugin. The vulnerability allows authenticated attackers with low privileges to escalate their privileges, potentially gaining full administrative control. The issue affects all versions from n/a through 8.85.0. The vulnerability was published in the NVD on May 25, 2026, with a [truncated]