Skip to main content
Loading…
    CVE-2026-28554 — wpForo Forum 2.4.14 contains a missing authorization vulnerability that allows authenticated subscribers to approve or unapprove any forum post via the wpforo_approve_ajax AJAX handler. Attackers expl — CVE Database · The Intelligence Room