CVE-2026-15992 | teydeastudio Password Policy Plugin up to 3.7.1 on WordPress Password Hint get_user role/user_login privileges management

SecurityVulns

A vulnerability identified as problematic has been detected in teydeastudio Password Policy Plugin up to 3.7.1 on WordPress. The impacted element is the function Module_Password_Hint::get_user of the component Password Hint Module. Performing a manipulation of the argument role/user_login results in improper privilege management.

This vulnerability was named CVE-2026-15992. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More