What is CVE-2026-32472?
CVE-2026-32472 is an unauthenticated broken access control vulnerability in Online Contact Widget versions up to 1.3.0. This flaw could allow remote attackers to gain unauthorized access to restricted functions. Users should immediately update to the latest patched version.
Azərbaycanca: CVE-2026-32472, Online Contact Widget plaginin 1.3.0 və daha əvvəlki versiyalarında autentifikasiya olunmadan istifadə edilə bilən qırıq giriş nəzarəti (Broken Access Control) zəifliyidir. Bu, uzaqdan hücum edənin məhdudlaşdırılmalı olan funksiyalara icazəsiz daxil olmasına səbəb ola bilər. Təsirə məruz qalan versiyaları istifadə edənlər dərhal ən son versiyaya yeniləməlidir.
Related CVEs
link basis: same weakness class CWE-284
FAQ2
Which plugin is affected by CVE-2026-32472?
This vulnerability affects the Online Contact Widget plugin.
What should users do to protect against CVE-2026-32472?
Users running the affected versions should immediately update to the latest patched version.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.