
CVE-2026-1072 The http://Keybase.io Verification plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.4.5. This is due to missing nonce v… https://www.cve.org/CVERecord?id=CVE-2026-1072
Post summary
Keybase.io Verification WordPress plugin up to v1.4.5 is vulnerable to CSRF due to a missing nonce, but the post provides no PoC, exploit, patch, or evidence of active exploitation.

