CVE-2026-103086
Stiofan UsersWP
Published 5 Oct 2026 · updated 5 Oct 2026 · Received
6.5 Medium · CVSS 3.1, patchstack.com
Description
Missing Authorization vulnerability in Stiofan UsersWP userswp allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects UsersWP: from n/a through 1.2.74.