CVE-2026-14488 | Meta Box AIO Plugin up to 3.8.0 on WordPress MB Frontend Submission Extension handle_request/check_ajax rwmb_frontend_field_object_id improper authorization (EUVD-2026-50274)
A vulnerability was found in Meta Box AIO Plugin up to 3.8.0 on WordPress and classified as critical. Impacted is the function handle_request/check_ajax of the component MB Frontend Submission Extension. Executing a manipulation of the argument rwmb_frontend_field_object_id can lead to improper authorization.
This vulnerability is handled as CVE-2026-14488. The attack can be executed remotely. There is not any exploit available.VulDB Recent EntriesRead More