PatchSiren

Vladimir Garagulya CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Vladimir Garagulya CVE published 2026-08-06

CVE-2026-66686

The Plugins Garbage Collector (Database Cleanup) plugin version 0.14 or earlier contains an Unauthenticated Cross Site Request Forgery (CSRF) vulnerability. This could allow an attacker to perform unintended actions on behalf of a user without their consent. The vulnerability was published on 2026-08-06T15:17:21.973Z and has not been modified since then. Administrators and users should be aware of this vu [truncated]