
CVE-2026-0688 The Webmention plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 5.6.2 via the 'Tools::read' function. This makes … https://www.cve.org/CVERecord?id=CVE-2026-0688
Post summary
The snippet announces that CVE-2026-0688 is a server‑side request forgery vulnerability in the WordPress Webmention plugin up to version 5.6.2, providing the technical details but no PoC, exploit, patch, or evidence of active exploitation.

