CVE-2026-18352General

LOW

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

0.0/ 10 priority

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • General: 2 classified signals
  • Disclosure: 1 classified signal
  • 3 total mentions across 1 day

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-08-02: 3Technical Details · 2026-08-02: 208-02
Signal classification2 categories
General
266.7%
Disclosure
133.3%
Referenced assets4 URLs
Full discourse3 posts
  • CVE@CVEnew
    General

    CVE-2026-18352 The User Access Manager plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 2.3.15 via the 'uamgetfile' parameter paramete… https://www.cve.org/CVERecord?id=CVE-2026-18352

    Post summary

    The post reports a directory traversal flaw in WordPress User Access Manager plugin, citing the CVE ID and vulnerable parameter, but provides no PoC, exploit, patch, or active exploitation details.

    000301.9K
    58.1K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-18352 The User Access Manager plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 2.3.15 via the 'uamgetfile' parameter paramete… https://www.cve.org/CVERecord?id=CVE-2026-18352 ----- Traducción: CVE-2026-18352 El … http://infoflow.cloud`

    Post summary

    The post discloses CVE-2026-18352, a directory traversal flaw in the WordPress User Access Manager plugin affecting all versions up to 2.3.15, and provides a link to the CVE record.

    0000041
    96 followersView on X
  • MalwareObserver@MalwareObserver
    General

    ⚔️ ATTACKS CVE Notify: 🚨 [CVE-2026-18352](https://plugins.trac.wordpress.org/browser/user-access-manager/tags/2.3.14/src/C... https://plugins.trac.wordpress.org/browser/user-access-manager/tags/2.3.14/src/Controller/BaseControllerTrait.php%3A22-50 #InfoSec #CyberAttack #ThreatIn

    Post summary

    The post references CVE-2026-18352 with a link to the plugin source code but offers no proof‑of‑concept, exploit, patch, or detailed vulnerability data.

    0000063
    18 followersView on X

Explore more