Orizon[verified]@OrizonCyberPatch
The tweet warns of a critical privilege‑escalation flaw in the WordPress PN plugin and urges users to apply a patch, but offers no details on the exploit code or active attacks.
Autumn Good@autumn_good_35Disclosure
A critical privilege‑escalation vulnerability (CVE‑2026‑4003) was disclosed for Users Manager – PN <= 1.1.15, allowing unauthenticated account takeover via an AJAX action. The advisory includes CVSS score and specific exploit vector details.
CVE@CVEnewDisclosure
The post announces CVE-2026-4003, describing a privilege escalation flaw in the Users manager – PN WordPress plugin up to version 1.1.15, but does not provide PoC, exploit, patch, or evidence of active exploitation.
Abu Hurayra 🇵🇸❤️🇧🇩@HurayraIITDisclosure
The blog post announces CVE-2026-4003, a critical unauthenticated privilege escalation vulnerability in the WordPress Users Manager PN plugin, rated CVSS 9.8, but provides no evidence of PoC, exploitation, or patching.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The post announces CVE-2026-4003, describing a privilege escalation flaw involving arbitrary user meta updates in the Users Manager PN Plugin, but provides no proof of concept, exploit code, patches, or evidence of active exploitation.
CVEFind.com@CveFindComDisclosure
The tweet discloses a privilege‑escalation vulnerability in the PN plugin for WordPress up to v1.1.15, highlighting the flaw but providing no PoC, exploit code, or remediation steps.
0day Signal@0dayPublishingDisclosure
The post discloses CVE‑2026‑4003, a flaw in WordPress Users Manager PN ≤ 1.1.15 that allows instant admin takeover via broken authentication and public nonce exposure (CVSS 9.8); no PoC, exploit, or patch is provided.