CVE-2026-86781
Last modified
CVE-2026-86781 is a medium-severity vulnerability rated 5.3/10 on the CVSS scale. The SSL Zen — SSL Certificate Installer & HTTPS Redirects WordPress plugin before 4.7.40 does not perform capability or nonce checks on a certificate-file download routine that runs early in the WordPress admin request lifecycle, allowing any authenticated user, including Subscribers, to download the site's TLS private key, certificates, and diagnostic logs.. EPSS estimates a 0.12% chance of exploitation in the next 30 days.
Description
The SSL Zen — SSL Certificate Installer & HTTPS Redirects WordPress plugin before 4.7.40 does not perform capability or nonce checks on a certificate-file download routine that runs early in the WordPress admin request lifecycle, allowing any authenticated user, including Subscribers, to download the site's TLS private key, certificates, and diagnostic logs.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Unknown | SSL Zen — SSL Certificate Installer & HTTPS Redirects | < 4.7.40 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-86781?
How severe is CVE-2026-86781?
How do I fix CVE-2026-86781?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-86775knowns (npm package) versions <= 0.29.1 contain a path trave…8.6
- CVE-2026-86776KeePass versions 2.35 through 2.61.1 fail to validate KDBX h…3.3
- CVE-2026-86777AlchemyCMS versions before 7.4.16 and 8.x before 8.3.6 fail …5.3
- CVE-2026-86779The Visualizer WordPress plugin before 4.0.6 does not prope…2.7
- CVE-2026-8678The MyParcel plugin for WordPress is vulnerable to authoriza…4.3
- CVE-2026-86780The Featured Image with URL WordPress plugin before 1.0.6 do…6.8
- CVE-2026-86782The Visualizer WordPress plugin before 4.0.6 does not prope…5.5
- CVE-2026-8679The AudioIgniter plugin for WordPress is vulnerable to Insec…7.5
- CVE-2026-86790The WP Highlight Box WordPress plugin through 1.0 does not e…6.8
- CVE-2026-86793SGLang allows unauthenticated pickle deserialization through…
- CVE-2026-8680Rejected reason: This CVE ID has been rejected or withdrawn …
- CVE-2026-86804A vulnerability was identified in seakee CPA-Manager-Plus up…5.3
Are you affected by CVE-2026-86781?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
