CVE-2026-39614
Description
Missing Authorization vulnerability in ilGhera JW Player for WordPress jw-player-7-for-wp allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects JW Player for WordPress: from n/a through <= 2.3.6.
CWE
- CWE-862 — Missing Authorization
Affected
- ilGhera / JW Player for WordPress — v=0 ≤2.3.6 [affected]
CVSS
- (none)
References
Source
cvelistV5-main/cves/2026/39xxx/CVE-2026-39614.json