Project Subscriptions
No data.
No advisories yet.
Solution
Update the WordPress Sell Downloads plugin to the latest available version (at least 1.2.4).
Workaround
No workaround given by the vendor.
Sun, 11 Oct 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 10 Oct 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Verification of Source of a Communication Channel vulnerability in CodePeople2 Sell Downloads sell-downloads allows Exploitation of Trusted Credentials.This issue affects Sell Downloads: from n/a through 1.2.3. | |
| Title | WordPress Sell Downloads plugin <= 1.2.3 - Broken Access Control vulnerability | |
| Weaknesses | CWE-940 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-10-11T12:13:36.569Z
Reserved: 2026-09-21T21:08:52.159Z
Link: CVE-2026-94590
Updated: 2026-10-11T12:05:44.875Z
Status : Received
Published: 2026-10-10T19:16:58.917
Modified: 2026-10-11T13:17:29.063
Link: CVE-2026-94590
No data.
OpenCVE Enrichment
Updated: 2026-10-10T22:15:19Z