MEDIUM
WP Delicious
CVE published 2026-04-08
CVE-2026-39528
A Missing Authorization vulnerability was discovered in WP Delicious, a WordPress plugin. The issue, tracked as CVE-2026-39528, allows attackers to exploit incorrectly configured access control security levels. The vulnerability affects WP Delicious versions from n/a through 1.9.5. The CVSS score is 5.3, and the severity is classified as MEDIUM. The CWE is 862. The vulnerability can be exploited by attack [truncated]