What is CVE-2026-15011?
A Code Injection vulnerability was found in the 'path' parameter of the Customer Support Ticket System & Helpdesk plugin for WordPress. Versions up to 6.0.5 are affected, and updating the plugin is recommended.
Azərbaycanca: WordPress üçün "Customer Support Ticket System & Helpdesk" plaqinində 'path' parametri vasitəsilə Code Injection zəifliyi aşkar edilib. 6.0.5 və əvvəlki versiyaları təsirlənir, plaqini yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-94
FAQ2
Which WordPress plugin is affected by CVE-2026-15011?
The Customer Support Ticket System & Helpdesk plugin.
Which versions are affected by CVE-2026-15011?
Versions up to 6.0.5.
See also6
grounded ✓NVD ↗
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.