What is CVE-2026-57626?
A Cross-Site Request Forgery (CSRF) vulnerability has been discovered in the MailPoet plugin, affecting versions 5.30.0 through 5.33.0. This allows an attacker to perform actions on behalf of an authenticated user. Immediate update to the latest version is recommended.
Azərbaycanca: MailPoet pluginində 5.30.0 ilə 5.33.0 versiyaları arasında Cross-Site Request Forgery (CSRF) zəifliyi aşkar edilib. Bu, təcavüzkara autentifikasiya olunmuş istifadəçinin hərəkətlərini təqlid etməyə imkan verir. Dərhal ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-352
FAQ2
Which versions of the MailPoet plugin are affected by CVE-2026-57626?
This CSRF vulnerability affects versions 5.30.0 through 5.33.0 of the MailPoet plugin.
What should be done to protect against CVE-2026-57626?
An immediate update to the latest version of the MailPoet plugin is recommended.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.