CVE-2026-39614

All FrameworksWordPressCWE-862CVE-2026-39614

CVE-2026-39614

State: PUBLISHED · Published: 2026-04-08 · Updated: 2026-04-13 · Assigner: Patchstack
Description
Missing Authorization vulnerability in ilGhera JW Player for WordPress jw-player-7-for-wp allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects JW Player for WordPress: from n/a through <= 2.3.6.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2026/39xxx/CVE-2026-39614.json