
🚨*CVE* CVE-2026-1900 The Link Whisper Free WordPress plugin before 0.9.1 has a publicly accessible REST endpoint that allows unauthenticated settings updates. https://www.cve.org/CVERecord?id=CVE-2026-1900 ----- Traducción: CVE-2026-1900 El plugin gratuito de WordPress Link… http://infoflow.cloud`
Post summary
Initial disclosure of CVE‑2026‑1900 detailing an unauthenticated REST endpoint in the Link Whisper WordPress plugin, enabling unauthorized settings changes.



