Skip to main content
Loading…
    CVE-2026-0682 — The Church Admin plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 5.0.28 due to insufficient validation of user-supplied URLs in the 'audio_u — CVE Database · The Intelligence Room