
🚨*CVE* CVE-2026-3772 The WP Editor plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.2.9.2. This is due to missing nonce verification … https://www.cve.org/CVERecord?id=CVE-2026-3772 ----- Traducción: CVE-2026-3772. El… http://infoflow.cloud`
Post summary
The post announces CVE-2026-3772, a CSRF flaw in the WP Editor plugin (v1.2.9.2 and older) caused by missing nonce verification, with no PoC, exploit, or patch details provided.



