CVE-2026-107645 | creativethemeshq Blocksy Companion Plugin up to 2.1.58 on WordPress AJAX implement_user_registration role privileges management
A vulnerability classified as critical was found in creativethemeshq Blocksy Companion Plugin up to 2.1.58 on WordPress. The impacted element is the function implement_user_registration of the component AJAX Handler. Executing a manipulation of the argument role can lead to improper privilege management.
This vulnerability appears as CVE-2026-107645. The attack may be performed from remote. There is no available exploit.VulDB Recent EntriesRead More