
CVE-2026-4090 The Inquiry Cart plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.4.2. This is due to missing nonce verification… https://www.cve.org/CVERecord?id=CVE-2026-4090
Post summary
The Inquiry Cart plugin for WordPress is vulnerable to CSRF attacks caused by missing nonce verification in all versions up to 3.4.2.

