Skip to main content
Loading…
    CVE-2026-28556 — wpForo Forum 2.4.14 contains a missing authorization vulnerability that allows authenticated subscribers to move, merge, or split any forum topic via the topic_move, topic_merge, and topic_split form — CVE Database · The Intelligence Room