CVE-2026-54768 | wp-graphql WPGraphQL Plugin up to 2.15.0 on WordPress SendPasswordResetEmailPayload information disclosure

SecurityVulns

A vulnerability classified as problematic was found in wp-graphql WPGraphQL Plugin up to 2.15.0 on WordPress. Affected by this vulnerability is an unknown functionality of the component SendPasswordResetEmailPayload. Such manipulation leads to information disclosure.

This vulnerability is traded as CVE-2026-54768. The attack may be launched remotely. There is no exploit available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More