
CVE-2026-2712 The WP-Optimize plugin for WordPress is vulnerable to unauthorized access of functionality due to missing capability checks in the `receive_heartbeat()` function in `in… https://www.cve.org/CVERecord?id=CVE-2026-2712
Post summary
The WP-Optimize plugin contains missing capability checks in its `receive_heartbeat()` function, enabling unauthorized access to functionality. The CVE is referenced via a cve.org link but no further details are given.



