← العودة للجدول
CVE-2026-9732
CVE-2026-9732 — GHSA: The EmergencyWP – Dead Man's switch & legacy deliverance plugin for WordPress is vulnerable to...
📅 2026-06-03
🟡 Medium 🔥 No GHSA Exploit Network CVSS 4.3

📋 الوصف الكامل

The EmergencyWP – Dead Man's switch & legacy deliverance plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.4.2. This is due to missing or incorrect nonce validation on the form_settings_ui (settings save handler, procedural include scope) function. This makes it possible for unauthenticated attackers to modify plugin settings includ

💻 الأنظمة المتأثرة

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-9732

📡 المصدر

GHSA

✅ الحلول والتخفيف

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←