CVE-2026-81021 | SupportCandy Plugin up to 3.5.2 on WordPress Attachment Download information disclosure

SecurityVulns

A vulnerability was found in SupportCandy Plugin up to 3.5.2 on WordPress and classified as problematic. The affected element is an unknown function of the component Attachment Download. Such manipulation leads to information disclosure.

This vulnerability is traded as CVE-2026-81021. The attack may be launched remotely. There is no exploit available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More