Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update the WordPress myCred Plugin to the latest available version (at least 3.0.4).
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 16 Jun 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mycred
Mycred mycred Wordpress Wordpress wordpress |
|
| Vendors & Products |
Mycred
Mycred mycred Wordpress Wordpress wordpress |
|
| Metrics |
ssvc
|
Mon, 15 Jun 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Subscriber Broken Access Control in myCred <= 3.0.3 versions. | |
| Title | WordPress myCred plugin <= 3.0.3 - Broken Access Control vulnerability | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-06-16T01:27:59.148Z
Reserved: 2026-04-15T09:20:46.957Z
Link: CVE-2026-40794
Updated: 2026-06-16T01:27:54.592Z
Status : Deferred
Published: 2026-06-15T21:16:51.783
Modified: 2026-06-15T21:24:32.790
Link: CVE-2026-40794
No data.
OpenCVE Enrichment
Updated: 2026-06-18T01:00:05Z