Beveiligingsadvies

CVE-2026-87792

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-09-15 15:20:17
Laatst bijgewerkt 2026-09-15 17:31:45
Toegewezen door ENISA
CVSS-score 8.7
Status PUBLISHED

Beschrijving

The "Design Scuole Italia" WordPress theme is affected by multiple Authorization Bypass vulnerabilities in the dsi_pdf_generator and dsi_csv_generator functions, allowing an unauthenticated attacker to access restricted "Circolare" content and registered users' data. An unauthenticated RSS feed at /circolare/feed/ further facilitates exploitation.