CVE-2026-5809 - wpForo Forum <= 3.0.2 - Authenticated (Subscriber+) Arbitrary File Deletion via 'data[body][fileurl]' Parameter
CVE ID :CVE-2026-5809
Published : April 11, 2026, 8:16 a.m. | 7 hours, 57 minutes ago
Description :The wpForo Forum plugin for WordPress is vulnerable to Arbitrary File Deletion in versions ...
Related Vulnerabilities
- CVE-2026-31262: Cross Site Scripting vulnerability in Altenar Sportsbook Software Platform (SB2) v.2.0 allows a remo MEDIUM
- CVE-2026-30232: Chartbrew is an open-source web application that can connect directly to databases and APIs and use N/A
- CVE-2026-3360: The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to an Insecu HIGH
- CVE-2026-6067: A heap buffer overflow vulnerability exists in the Netwide Assembler (NASM) due to a lack of bounds HIGH
- CVE-2026-35650: OpenClaw before 2026.3.22 contains an environment variable override handling vulnerability that allo HIGH
Related Coverage
Threat Actors