Project Subscriptions
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Sat, 03 Oct 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 02 Oct 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Amauri
Amauri wpmobile.app Wordpress-extensions Wordpress-extensions wpmobile.app |
|
| Vendors & Products |
Amauri
Amauri wpmobile.app Wordpress-extensions Wordpress-extensions wpmobile.app |
Fri, 02 Oct 2026 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The WPMobile.App – Android and iOS App Builder plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 11.82 This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for unauthenticated attackers to exfiltrate password-reset URLs for arbitrary users, including administrators, mirrored into the push queue by the mail-to-push feature, and use those URLs to take over the targeted accounts. This exploit chain requires the plugin's mail-to-push feature (wpmobile_auto_mail=1) to be enabled, as that setting is what causes outbound WordPress password-reset emails — including the reset URL and key — to be mirrored into the push row queue where they become accessible to the attacker. | |
| Title | WPMobile.App <= 11.82 - Unauthenticated Admin Account Takeover via 'wpapp_category[]' Parameter | |
| Weaknesses | CWE-862 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2026-10-02T18:04:42.408Z
Reserved: 2026-09-21T18:50:05.897Z
Link: CVE-2026-94541
Updated: 2026-10-02T18:04:38.355Z
Status : Deferred
Published: 2026-10-02T10:17:09.313
Modified: 2026-10-02T18:17:07.870
Link: CVE-2026-94541
No data.
OpenCVE Enrichment
Updated: 2026-10-02T14:45:16Z