CVE-2026-16613
EUVD-2026-5310705.08.2026, 07:16
The GDPR Cookie Compliance WordPress plugin before 5.1.0 expires the visitor's cookies from an action that is reachable without authentication and performs no request-origin check, allowing an attacker to log any user out and delete the site's cookies by luring them to a crafted link.
Awaiting analysis
This vulnerability is currently awaiting analysis.
Common Weakness Enumeration