CVE-2026-48197

PublishPress Capabilities

Published 6 Oct 2026 · updated 6 Oct 2026 · Deferred

7.2 High · CVSS 3.1, patchstack.com

Description

Incorrect Privilege Assignment vulnerability in PublishPress PublishPress Capabilities capability-manager-enhanced allows Privilege Escalation.This issue affects PublishPress Capabilities: from n/a through 2.45.0.

References