
CVE-2026-18465 The WP MAPS PRO WordPress plugin before 6.1.3 does not perform a capability check in one of its AJAX actions, which is also available to unauthenticated users, and do… https://www.cve.org/CVERecord?id=CVE-2026-18465
Post summary
The entry discloses a missing capability check in an AJAX action of WP MAPS PRO v<6.1.3 that could allow unauthenticated access; no PoC, exploit, or patch information is included.

