Skip to main content
Loading…
    CVE-2026-33290 — WPGraphQL provides a GraphQL API for WordPress sites. Prior to version 2.10.0, an authorization flaw in updateComment allows an authenticated low-privileged user (including a custom role with zero cap — CVE Database · The Intelligence Room