CVE-2026-86583 | Carazo Import and export users and customers Plugin up to 2.4.17 on WordPress CSV Import add_role privileges management

SecurityVulns

A vulnerability has been found in Carazo Import and export users and customers Plugin up to 2.4.17 on WordPress and classified as critical. The impacted element is the function add_role of the component CSV Import. Performing a manipulation results in improper privilege management.

This vulnerability is identified as CVE-2026-86583. The attack can be initiated remotely. There is not any exploit available.VulDB Recent EntriesRead More