Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 26 Jan 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 26 Jan 2026 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wordpress
Wordpress wordpress |
|
| Vendors & Products |
Wordpress
Wordpress wordpress |
Sat, 24 Jan 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Set Bulk Post Categories plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1. This is due to missing nonce validation on the bulk category update functionality. This makes it possible for unauthenticated attackers to modify post categories in bulk via a forged request granted they can trick a site administrator into performing an action such as clicking on a link. | |
| Title | Set Bulk Post Categories <= 1.1 - Cross-Site Request Forgery to Bulk Post Category Update | |
| Weaknesses | CWE-352 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2026-01-26T15:44:57.721Z
Reserved: 2026-01-16T20:36:19.873Z
Link: CVE-2026-1081
Updated: 2026-01-26T15:29:29.926Z
Status : Awaiting Analysis
Published: 2026-01-24T08:16:08.313
Modified: 2026-01-26T15:03:33.357
Link: CVE-2026-1081
No data.
OpenCVE Enrichment
Updated: 2026-01-26T11:48:31Z