What is CVE-2026-27418?
An unauthenticated broken access control vulnerability has been found in WP Fast Total Search plugin versions 1.81.282 and below. This flaw allows unauthenticated attackers to gain unauthorized access to sensitive data, and immediate update is strongly recommended.
Azərbaycanca: WP Fast Total Search plaqini 1.81.282 və daha əvvəlki versiyalarında autentifikasiya olunmamış istifadəçilərə məhdudiyyətsiz giriş imkanı yaradan qırılmış giriş nəzarəti zəifliyi aşkarlanıb. Bu boşluq təsdiqlənməmiş şəxslərə həssas məlumatlara çıxış əldə etməyə imkan verir, dərhal ən son versiyaya yeniləmə tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-862
FAQ2
Which versions of the WP Fast Total Search plugin are affected by CVE-2026-27418?
WP Fast Total Search plugin versions 1.81.282 and below are affected by this vulnerability.
What does the CVE-2026-27418 vulnerability allow unauthenticated attackers to do?
This vulnerability allows unauthenticated attackers to gain unauthorized access to sensitive data.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.