PatchSiren

wpweb CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH wpweb CVE published 2026-01-05

CVE-2025-68547

A Missing Authorization vulnerability in the Follow My Blog Post plugin for WordPress allows attackers to exploit incorrectly configured access control security levels. This issue affects Follow My Blog Post versions from n/a through 2.4.0. The vulnerability could lead to potential unauthorized access or disruption of website functionality. Defenders responsible for WordPress installations with the Follow [truncated]