CVE-2026-6803 | wupsales AI Copilot Plugin up to 1.4.12 on WordPress AJAX Action getPermissions/getNoncedMethods authorization
A vulnerability classified as critical has been found in wupsales AI Copilot Plugin up to 1.4.12 on WordPress. The impacted element is the function getPermissions/getNoncedMethods of the component AJAX Action. The manipulation leads to missing authorization.
This vulnerability is uniquely identified as CVE-2026-6803. The attack is possible to be carried out remotely. No exploit exists.VulDB Recent EntriesRead More