OffSeq | Adversary Tactics for Cyber Resilience[verified]@offseqPatch
The tweet warns that CVE-2026-1729 permits unauthenticated admin logins via OTP bypass in AdForest theme up to v6.0.12, advising users to block the vulnerable function and monitor access.
Quttera - eCommerce Security[verified]@MNovofastovskyPatch
AdForest theme versions ≤6.0.12 allow unauthenticated attackers to bypass authentication via OTP login, enabling them to log in as any user, including admins. Users should patch or remove the theme immediately and tighten login security.
OffSeq | Adversary Tactics for Cyber Resilience[verified]@offseqDisclosure
CVE‑2026‑1729 is a critical authentication bypass vulnerability in the AdForest WordPress theme that lets attackers log in as any user, including admin. No patch has been released yet, so site owners should protect their sites immediately.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The tweet announces the discovery of an authentication bypass flaw in the AdForest WordPress Theme, providing a link to the vulnerability details but offering no exploitation or mitigation specifics.
CVEFind.com@CveFindComDisclosure
The advisory reports an authentication bypass flaw in AdForest WordPress theme up to version 6.0.12, allowing unauthorized access; no PoC, exploit code, active exploitation, or patch information is included.
_cr0w_@f3dscr0wExploit
The post announces a working PoC exploit for CVE‑2026‑1729, a WordPress authentication bypass, and provides source code and a writeup.
CVE@CVEnewDisclosure
The AdForest WordPress theme is vulnerable to authentication bypass up to version 6.0.12 due to improper verification by the plugin. No patch, exploit, or PoC was provided in the text.