Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 11 Jun 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 10 Jun 2026 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wordpress
Wordpress wordpress Yoast Yoast yoast Duplicate Post |
|
| Vendors & Products |
Wordpress
Wordpress wordpress Yoast Yoast yoast Duplicate Post |
Wed, 10 Jun 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Yoast Duplicate Post through 4.6 contains a cross-site request forgery vulnerability in the duplicate_post_dismiss_notice handler, which verifies no nonce or capability. Attackers can trick any authenticated user into sending a request that sets the duplicate_post_show_notice site option, suppressing admin notices network-wide. | |
| Title | Yoast Duplicate Post through 4.6 Cross-Site Request Forgery via duplicate_post_dismiss_notice | |
| First Time appeared |
Duplicate Post Project
Duplicate Post Project duplicate Post |
|
| Weaknesses | CWE-352 | |
| CPEs | cpe:2.3:a:duplicate_post_project:duplicate_post:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Duplicate Post Project
Duplicate Post Project duplicate Post |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-06-11T13:53:17.269Z
Reserved: 2026-06-10T17:16:10.427Z
Link: CVE-2026-53739
Updated: 2026-06-11T13:52:49.374Z
Status : Deferred
Published: 2026-06-10T22:17:02.230
Modified: 2026-06-11T15:22:26.633
Link: CVE-2026-53739
No data.
OpenCVE Enrichment
Updated: 2026-06-10T23:15:28Z