Security Advisory

CVE-2026-1900

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-04-07 06:00:11
Last updated 2026-04-07 16:26:15
Assigner WPScan
CVSS score not scored
State PUBLISHED

Description

The Link Whisper Free WordPress plugin before 0.9.1 has a publicly accessible REST endpoint that allows unauthenticated settings updates.