
CVE-2026-4127 The Speedup Optimization plugin for WordPress is vulnerable to Missing Authorization in all versions up to and including 1.5.9. The `speedup01_ajax_enabled()` function,… https://www.cve.org/CVERecord?id=CVE-2026-4127
Post summary
A new CVE (CVE‑2026‑4127) affecting the WordPress Speedup Optimization plugin has been disclosed, highlighting missing authorization up to version 1.5.9, without mention of a PoC, exploit, or patch.

