CVE-2026-4979 - UsersWP <= 1.2.58 - Authenticated (Subscriber+) Server-Side Request Forgery via 'uwp_crop' Parameter
CVE ID :CVE-2026-4979
Published : April 11, 2026, 2:16 a.m. | 13 hours, 57 minutes ago
Description :The UsersWP – Front-end login form, User Registration, User Profile & Members Directory pl...
Related Vulnerabilities
- CVE-2026-4979: The UsersWP – Front-end login form, User Registration, User Profile & Members Directory plugin for W MEDIUM
- CVE-2026-3689: OpenClaw Canvas Path Traversal Information Disclosure Vulnerability. This vulnerability allows remot MEDIUM
- CVE-2026-27460: Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists. MEDIUM
- CVE-2026-40086: Rembg is a tool to remove images background. Prior to 2.0.75, a path traversal vulnerability in the MEDIUM
- CVE-2026-6014: A flaw has been found in D-Link DIR-513 1.10. This issue affects the function formAdvanceSetup of th HIGH
Related Coverage
Threat Actors