MEDIUM
Vladimir Garagulya
CVE published 2026-08-06
CVE-2026-66686
The Plugins Garbage Collector (Database Cleanup) plugin version 0.14 or earlier contains an Unauthenticated Cross Site Request Forgery (CSRF) vulnerability. This could allow an attacker to perform unintended actions on behalf of a user without their consent. The vulnerability was published on 2026-08-06T15:17:21.973Z and has not been modified since then. Administrators and users should be aware of this vu [truncated]