PatchSiren

Templately CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Templately CVE published 2026-08-07

CVE-2026-15359

The Templately WordPress plugin before 3.7.1 has a vulnerability allowing unauthenticated attackers to overwrite the administrator's stored cloud service connection, potentially redirecting the site's cloud template library to attacker-controlled content. This could lead to site compromise via unauthorized cloud service connection overwrite. The vulnerability has a CVSS score of 6.5 and a severity of MEDI [truncated]