CVE@CVEnewDisclosure
CVE-2026-1992 reports an Insecure Direct Object Reference in ExactMetrics plugin versions 8.6.0‑9.0.2; no PoC, exploit, patch, or active exploitation is referenced.
RedPacket Security@RedPacketSecDisclosure
A security alert announces CVE-2026-1992 affecting the ExactMetrics WordPress plugin, directing readers to a link for further details, but provides no technical specifics or proof-of-concept evidence.
The Hacker Wire@TheHackerWireDisclosure
The post announces a high‑severity IDOR vulnerability in ExactMetrics WordPress plugin versions 8.6.0 through 9.0.2, without providing PoC, exploit code, or patch information.
CVEFind.com@CveFindComDisclosure
The tweet announces a high‑severity RCE vulnerability (CVE‑2026‑1992) in ExactMetrics plugin for WordPress, affecting versions 8.6.0‑9.0.2, which allows attackers to bypass plugin installation permissions.