
Vulmon Vulnerability Feed@VulmonFeeds
Disclosure
CVE-2026-15209 The JS Help Desk WordPress plugin before 3.1.5 does not verify that the requesting user owns the ticket being loaded https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-15209
Post summary
CVE-2026-15209 reveals an authorization flaw in the JS Help Desk WordPress plugin where ticket ownership is not verified, but no PoC, exploit code, or patch information is provided.
00001138
4.1K followersView on X
