CVE-2026-80338 | CMB2 Plugin up to 2.12.x on WordPress AJAX Actions authorization

SecurityVulns

A vulnerability marked as problematic has been reported in CMB2 Plugin up to 2.12.x on WordPress. Affected is an unknown function of the component AJAX Actions. Performing a manipulation results in missing authorization.

This vulnerability is reported as CVE-2026-80338. The attack is possible to be carried out remotely. No exploit exists.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More