s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

CVE-2026-95592

📛 CVE Title

WordPress Team plugin <= 6.0.0 - Insecure Direct Object References (IDOR) vulnerability

Description

Unauthenticated Insecure Direct Object References (IDOR) in Team <= 6.0.0 versions.

Overview

State
PUBLISHED
Assigner (CNA)
Patchstack
CVSS severity
MEDIUM
CVSS score
CVSS 5.3 / 10 5.3 5.3 / 10
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Effective score
5.3 / 10 MEDIUM source: CNA overview
CWE(s)
CWE-639
Reserved
2026-09-22
Published
2026-09-23 18:14 UTC
Last updated
2026-09-23 19:26 UTC
Source
https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/95xxx/CVE-2026-95592.json

NVD triage scoring NVD CVE 2.0

Layer NVD adds on top of the CNA's CVE record — published / last-modified timestamps, exploitability / impact subscores, and the FIRST.org EPSS probability that this CVE will be exploited in the wild in the next 30 days.

NVD published
2026-09-23 19:19:52 UTC
NVD last modified
2026-09-23 20:17:25 UTC
NVD CVSS v3.1
CVSS 5.3 / 10 5.3 5.3 / 10 MEDIUM source: audit@patchstack.com
NVD CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Exploitability subscore
3.9 / 10
Impact subscore
1.4 / 10

NVD / KEV / EPSS data refreshed 2026-09-24 04:27 UTC. Re-run the 🛰 Backfill from NVD button above to refresh.

European Union Vulnerability Database ENISA EUVD

ENISA's official EU repository for curated vulnerability intelligence. Carries a separate identifier (EUVD-YYYY-NNNN) and frequently exposes an earlier-published description + CVSS than NVD does.

EUVD ID
EUVD-2026-85501
Assigner
Patchstack
Published
Sep 23, 2026, 6:14:46 PM
Updated
Sep 23, 2026, 7:26:53 PM
EUVD base score (CVSS 3.1)
5.3 / 10
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
EUVD-reported EPSS
0.0000
Vendors
Oleh RadiusTheme
Products
Team (n/a ≤6.0.0)
Aliases
GHSA-xxjp-2jq6-mmwv

ENISA description: Unauthenticated Insecure Direct Object References (IDOR) in Team <= 6.0.0 versions.

EUVD references (1)

Affected products (1)

VendorProductVersionsPlatforms
Oleh RadiusTheme Team n/a (affected)

Vendor references (1)

References embedded in the original CVE record by the assigning CNA.

Web references (0)

DuckDuckGo results ranked by threat-intel / vendor advisory domains. Generated by the 🔎 Find references (web) button above — same flow as the Remediations search.

No web references attached yet.

NVD-tagged references (1)

Reference list NVD curates from the CNA record, vendor advisories, and third-party reports. The tag chips below are NVD's analyst-assigned categories.

Remediations (10)

  • web:basefortify.eu

    Vulnerability report for CVE-2026-95592 , including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

    2026-09-24 11:45 UTC
  • web:ctiwatch.com

    CVE-2026-95592 can be exploited remotely over the network without requiring physical or adjacent access, significantly expanding the attack surface for threat actors.

    2026-09-24 11:45 UTC
  • web:cvefeed.io

    The following list is the news that have been mention CVE-2026-95592 vulnerability anywhere in the article. Results are limited to the first 20 news articles due to potential performance issues. EPSS is a daily estimate of the probability of exploitation activity being observed over the next 30 days.

    2026-09-24 11:45 UTC
  • web:cvetodo.com

    CVE-2026-95592 is a CVSS 5.3 medium-severity vulnerability in Team. Full technical analysis, mitigations , and exploit status — updated in real time.

    2026-09-24 11:45 UTC
  • web:feedly.com

    News CVE-2026-95592 WordPress Team plugin <= 6.0.0 - Insecure Direct Object References (IDOR) vulnerability

    2026-09-24 11:45 UTC
  • web:securityonline.info

    Critical GitHub Enterprise Server vulnerabilities allow remote code execution. Update your instances now to mitigate these high-severity security flaws.

    2026-09-24 11:45 UTC
  • web:senserva.com

    Every Microsoft security patch (KB) and the CVEs it fixes, with severity, CVSS, and CISA KEV status. Cross-linked to the CVE reference.

    2026-09-24 11:45 UTC
  • web:vulners.com

    Built on top of Vulners' database and SDK, end-user solutions give security professionals and developers lightweight and powerful tools for vulnerability remediation

    2026-09-24 11:45 UTC
  • web:www.secpod.com

    Patch Timeline & Exploitation Gap Analysis The September 16, 2026 dataset contains three CISA KEV vulnerabilities. Each record was added to the catalog on September 16, 2026 and assigned a remediation deadline of September 19, 2026 . Consequently, all three vulnerabilities have an identical three-calendar-day KEV inclusion-to- remediation window.

    2026-09-24 11:45 UTC
  • web:www.strix.ai

    How severe is CVE-2026-95592 ? CVE-2026-95592 has a CVSS score of 5.3/10 (MEDIUM severity). How do I fix CVE-2026-95592 ? Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

    2026-09-24 11:45 UTC

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.

Raw JSON

The full cvelistV5 record. Download as CVE-2026-95592.json.

{
  "containers": {
    "adp": [
      {
        "metrics": [
          {
            "other": {
              "content": {
                "id": "CVE-2026-95592",
                "options": [
                  {
                    "Exploitation": "none"
                  },
                  {
                    "Automatable": "yes"
                  },
                  {
                    "Technical Impact": "partial"
                  }
                ],
                "role": "CISA Coordinator",
                "timestamp": "2026-09-23T19:26:47.981339Z",
                "version": "2.0.3"
              },
              "type": "ssvc"
            }
          }
        ],
        "providerMetadata": {
          "dateUpdated": "2026-09-23T19:26:53.613Z",
          "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "shortName": "CISA-ADP"
        },
        "title": "CISA ADP Vulnrichment"
      }
    ],
    "cna": {
      "affected": [
        {
          "collectionURL": "https://wordpress.org/plugins",
          "defaultStatus": "unaffected",
          "packageName": "tlp-team",
          "product": "Team",
          "vendor": "Oleh RadiusTheme",
          "versions": [
            {
              "changes": [
                {
                  "at": "6.0.1",
                  "status": "unaffected"
                }
              ],
              "lessThanOrEqual": "6.0.0",
              "status": "affected",
              "version": "n/a",
              "versionType": "custom"
            }
          ]
        }
      ],
      "credits": [
        {
          "lang": "en",
          "type": "finder",
          "user": "00000000-0000-4000-9000-000000000000",
          "value": "saddanr | Patchstack Bug Bounty Program"
        }
      ],
      "descriptions": [
        {
          "lang": "en",
          "supportingMedia": [
            {
              "base64": false,
              "type": "text/html",
              "value": "Unauthenticated Insecure Direct Object References (IDOR) in Team <= 6.0.0 versions."
            }
          ],
          "value": "Unauthenticated Insecure Direct Object References (IDOR) in Team <= 6.0.0 versions."
        }
      ],
      "impacts": [
        {
          "capecId": "CAPEC-180",
          "descriptions": [
            {
              "lang": "en",
              "value": "CAPEC-180 Exploiting Incorrectly Configured Access Control Security Levels"
            }
          ]
        }
      ],
      "metrics": [
        {
          "cvssV3_1": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "NONE",
            "baseScore": 5.3,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "LOW",
            "integrityImpact": "NONE",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N",
            "version": "3.1"
          },
          "format": "CVSS",
          "scenarios": [
            {
              "lang": "en",
              "value": "GENERAL"
            }
          ]
        }
      ],
      "problemTypes": [
        {
          "descriptions": [
            {
              "cweId": "CWE-639",
              "description": "CWE-639 Authorization Bypass Through User-Controlled Key",
              "lang": "en",
              "type": "CWE"
            }
          ]
        }
      ],
      "providerMetadata": {
        "dateUpdated": "2026-09-23T18:14:46.168Z",
        "orgId": "21595511-bba5-4825-b968-b78d1f9984a3",
        "shortName": "Patchstack"
      },
      "references": [
        {
          "tags": [
            "vdb-entry"
          ],
          "url": "https://patchstack.com/database/wordpress/plugin/tlp-team/vulnerability/wordpress-team-plugin-6-0-0-insecure-direct-object-references-idor-vulnerability?_s_id=cve"
        }
      ],
      "solutions": [
        {
          "lang": "en",
          "supportingMedia": [
            {
              "base64": false,
              "type": "text/html",
              "value": "Update the WordPress Team plugin to the latest available version (at least 6.0.1)."
            }
          ],
          "value": "Update the WordPress Team plugin to the latest available version (at least 6.0.1)."
        }
      ],
      "source": {
        "discovery": "EXTERNAL"
      },
      "title": "WordPress Team plugin <= 6.0.0 - Insecure Direct Object References (IDOR) vulnerability",
      "x_generator": {
        "engine": "Vulnogram 0.2.0"
      }
    }
  },
  "cveMetadata": {
    "assignerOrgId": "21595511-bba5-4825-b968-b78d1f9984a3",
    "assignerShortName": "Patchstack",
    "cveId": "CVE-2026-95592",
    "datePublished": "2026-09-23T18:14:46.168Z",
    "dateReserved": "2026-09-22T09:18:20.379Z",
    "dateUpdated": "2026-09-23T19:26:53.613Z",
    "state": "PUBLISHED"
  },
  "dataType": "CVE_RECORD",
  "dataVersion": "5.2"
}