What is CVE-2026-73386?
This CVE describes an unauthenticated sensitive data exposure vulnerability in the Track Geolocation Of Users plugin for Contact Form 7, affecting versions 3.0.2 and below. Immediate update of the plugin to the latest version is required to protect potentially exposed data on affected sites.
Azərbaycanca: Bu CVE, Contact Form 7 ilə istifadə edilən Track Geolocation Of Users plagininin 3.0.2 və aşağı versiyalarında autentifikasiya olmadan həssas məlumatların ifşasına imkan verən zəiflikdir. Təsirə məruz qalan saytlardakı məlumatların qorunması üçün plaginin dərhal ən son versiyaya yenilənməsi tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-200
FAQ2
Which plugin and versions are affected by CVE-2026-73386?
This vulnerability affects the Track Geolocation Of Users plugin for Contact Form 7, specifically versions 3.0.2 and below.
What should be done to protect against CVE-2026-73386?
To protect the data on affected sites, it is recommended to immediately update the plugin to the latest version.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.