CRITICAL
9.8 CVE-2026-27546 Published 16 Sept 2026
WordPress Auth Bypass
Worried this affects one of your servers?
WordPress is affected by an authentication bypass vulnerability.
An attacker can exploit the _account_log function to log in as an admin without proper credentials.
This issue affects all versions of WordPress.
Reference: CVE-2026-27546 on NVD
← Back to Security News