CVE-2026-9615 | Flexme Flex Import Plugin up to 3.0 on WordPress AJAX Handlers wpnonce missing authentication

SecurityVulns

A vulnerability categorized as problematic has been discovered in Flexme Flex Import Plugin up to 3.0 on WordPress. The impacted element is the function license_activate_fleximp/license_deactivate_fleximp of the component AJAX Handlers. The manipulation of the argument wpnonce results in missing authentication.

This vulnerability was named CVE-2026-9615. The attack may be performed from remote. There is no available exploit.VulDB Recent EntriesRead More