
CVE-2026-1377 The imwptip plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1. This is due to missing nonce validation on the s… https://www.cve.org/CVERecord?id=CVE-2026-1377
Post summary
The CVE-2026-1377 report identifies a CSRF vulnerability in the WordPress imwptip plugin caused by missing nonce validation in all versions up to 1.1.
