CVE-2026-15303 | Sixstorage 6Storage Rentals Plugin up to 2.27.0 on WordPress AJAX six_storage_create_wp_user improper authentication (EUVD-2026-58840)

SecurityVulns

A vulnerability labeled as critical has been found in Sixstorage 6Storage Rentals Plugin up to 2.27.0 on WordPress. Affected by this vulnerability is the function six_storage_create_wp_user of the component AJAX Handler. Executing a manipulation can lead to improper authentication.

This vulnerability appears as CVE-2026-15303. The attack may be performed from remote. There is no available exploit.VulDB Recent EntriesRead More