CVE-2026-15231
EUVD-2026-5217203.08.2026, 07:16
The Tag, Category, and Taxonomy Manager WordPress plugin before 3.51.0 does not verify that a user is authorized to access a referenced post before processing it and returning derived data, allowing users with contributor privileges to disclose data from private or draft posts they do not own.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.