← العودة للجدول
CVE-2026-47365
CVE-2026-47365 — Argument injection vulnerability in WordPress Toolkit before 6.11.0 as used in c
📅 2026-06-12
🔴 Critical 🔥 No NVD Exploit Web CVSS 9.9

📋 الوصف الكامل

Argument injection vulnerability in WordPress Toolkit before 6.11.0 as used in cPanel & WHM, allows remote authenticated users to bypass cross-tenant authorization and execute arbitrary wp-toolkit CLI commands as another account.

💻 الأنظمة المتأثرة

WordPress

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-47365

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2026-47365 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←