CVE-2026-0674
Description
Missing Authorization vulnerability in Campaign Monitor Campaign Monitor for WordPress forms-for-campaign-monitor allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Campaign Monitor for WordPress: from n/a through <= 2.9.0.
CWE
- CWE-862 — Missing Authorization
Affected
- Campaign Monitor / Campaign Monitor for WordPress — v=0 ≤2.9.0 [affected]
CVSS
- (none)
References
Source
cvelistV5-main/cves/2026/0xxx/CVE-2026-0674.json