CVE-2026-4327 | sebwordpress The Welcomizer Plugin up to 2.8.1 on WordPress Savesection twiz-ajax.php twiz_ajax_callback twiz_custom_logic improper authorization
A vulnerability marked as critical has been reported in sebwordpress The Welcomizer Plugin up to 2.8.1 on WordPress. The impacted element is the function twiz_ajax_callback of the file twiz-ajax.php of the component Savesection Handler. This manipulation of the argument twiz_custom_logic causes improper authorization.
This vulnerability is tracked as CVE-2026-4327. The attack is possible to be carried out remotely. No exploit exists.VulDB Recent EntriesRead More