CVE-2026-6514Disclosure

LOWCVSS 7.5 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

The InfusedWoo Pro plugin for WordPress is vulnerable to Arbitrary File Read in all versions up to, and including, 5.1.2 via the popup_submit. This makes it possible for unauthenticated attackers to make web requests to arbitrary locations originating from the web application and can be used to query and modify information from internal services.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-918

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-05-14: 2Technical Details · 2026-05-14: 205-14
Signal classification2 categories
Disclosure
150.0%
General
150.0%
Referenced assets2 URLs
Full discourse2 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-6514 Arbitrary File Read in InfusedWoo Pro WordPress Plugin Versions Up to 5.1.2 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-6514

    Post summary

    CVE-2026-6514 exposes an arbitrary file read flaw in InfusedWoo Pro WordPress Plugin up to version 5.1.2; details are linked via a Vulmon page.

    0000040
    4.0K followersView on X
  • Kaitan ID Security@KaitanSecurity
    Disclosure

    ⚠️ HIGH — CVE-2026-6514 The InfusedWoo Pro plugin for WordPress is vulnerable to Arbitrary File Read in all versions up to, and including, 5.1.… CVSS 7.5 Full analysis → https://sec.kaitan.id/cves/CVE-2026-6514 #WordPress #CyberSecurity #InfoSec

    Post summary

    The post discloses CVE‑2026‑6514, an arbitrary file read flaw in all versions of the InfusedWoo Pro WordPress plugin up to 5.1, rated CVSS 7.5.

    0000044
    90 followersView on X

Explore more