CVE-2026-88931 The Social Web Suite WordPress plugin through 4.1.12… — CVE Notify — TG.ME

🚨 CVE-2026-88931
The Social Web Suite WordPress plugin through 4.1.12 does not restrict which of its settings may be written through an unauthenticated endpoint, allowing attackers to overwrite arbitrary Social Web Suite WordPress plugin through 4.1.12 options, including the shared secret that guards its own privileged endpoints.

🎖@cveNotify
WPScan
Social Web Suite <= 4.1.12 - Unauthenticated Arbitrary Plugin Settings Update
See details on Social Web Suite <= 4.1.12 - Unauthenticated Arbitrary Plugin Settings Update CVE 2026-88931. View the latest Plugin Vulnerabilities on WPScan.
October 9, 2026 18