
CVSS 8.8. CVE-2026-4297. Worth reading before your users find out the hard way. The Welcome Software Publishing plugin for WordPress is vulnerable to Arbitrary Options Update in all versions u... The best defense is the one you set up before you needed it.
Post summary
The post announces CVE-2026-4297 for the Welcome Software Publishing WordPress plugin, noting a high CVSS score and an arbitrary options update flaw, but provides no PoC, exploit, or patch information.

