CVE 7.1 HIGH

WordPress Disable Comments for Any Post Types (Remove comments) plugin <= 1.3.0 - Broken Authentication vulnerability_CVE-2026-42749

7.1 / 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H

Description

Authentication Bypass Using an Alternate Path or Channel vulnerability in Themeisle Disable Comments for Any Post Types (Remove comments) comments-plus allows Password Recovery Exploitation.This issue affects Disable Comments for Any Post Types (Remove comments): from n/a through <= 1.3.0.

Basic Information

ID CVE-2026-42749
Source Patchstack
Published May 27, 2026 at 09:49

Affected Product

Vendor Themeisle
Product Disable Comments for Any Post Types (Remove comments)
Affected Versions Themeisle Disable Comments for Any Post Types (Remove comments) 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.