Volerion[verified]@VolerionSecPatch
CVE-2026-4283 enables unauthenticated remote deletion of WordPress user accounts via a super-unsubscribe endpoint; attackers are exploiting it, but the issue is fixed in version 3.1.39.
Orizon[verified]@OrizonCyberPatch
CVE-2026-4283 allows unauthorized account destruction in the WP DSGVO Tools (GDPR) WordPress plugin; critical severity with a patch now available.
Orizon[verified]@OrizonCyberPatch
The tweet highlights CVE-2026-4283, a critical flaw in the WP DSGVO Tools plugin that permits unauthorized account deletion, and urges users to apply the available patch immediately.
CVE@CVEnewDisclosure
A security advisory highlights that the WP DSGVO Tools plugin up to version 3.1.38 is vulnerable to unauthorized account destruction, with no PoC, exploit, or patch details provided.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
A newly disclosed unauthenticated account destruction vulnerability (CVE‑2026‑4283) affecting the WP DSGVO Tools WordPress plugin has been reported with basic details on VulMon.
CVEFind.com@CveFindComDisclosure
New CVE‑2026‑4283 affecting WP DSGVO Tools (up to v3.1.38) is disclosed; it allows attackers to bypass email confirmation and delete user accounts.
The Hacker Wire@TheHackerWireDisclosure
A critical vulnerability (CVE-2026-4283) in the WP DSGVO Tools WordPress plugin allows unauthorized account deletion via a super-unsubscribe AJAX endpoint, with no active exploitation or patch information provided.
0day Signal@0dayPublishingDisclosure
The tweet announces a new WordPress vulnerability (CVE-2026-4283) that allows non‑admin users to delete accounts via an exposed AJAX endpoint, linking to additional details.