PatchSiren

WpDevArt CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM WpDevArt CVE published 2026-05-25

CVE-2026-24597

Cross-Site Request Forgery (CSRF) vulnerability in the WpDevArt Organization chart WordPress plugin, affecting versions up to and including 1.7.5. The vulnerability allows attackers to perform unauthorized actions on behalf of authenticated users through crafted requests. The CVSS 3.1 score of 4.3 (Medium severity) reflects network attack vector, low attack complexity, no required privileges, but requires [truncated]