10
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Description
Incorrect Privilege Assignment vulnerability in Modular DS modular-connector allows Privilege Escalation.This issue affects Modular DS: from 2.5.2 before 2.6.0.
AI Analysis
Privilege Escalation vulnerability in Modular DS plugin due to incorrect privilege assignment
Basic Information
ID
CVE-2026-23800
Source
Patchstack
Published
Jan 16, 2026 at 20:40
Modified
Jan 16, 2026 at 21:08
Affected Product
Vendor
WordPress
Product
Modular DS
Version
2.5.2
Affected Versions
Modular DS 2.5.2
CWE Classification
AI Assessment
AI Score
10 / 10
AI Severity
Critical
Vendor
WordPress
Product
Modular DS
Version
2.5.2