CVE-2026-19632: Account takeover vulnerability in TranslatePress WordPress plugin, 9.8 rating 🔥
A recently disclosed vulnerability in the TranslatePress WordPress plugin allows unauthenticated attackers to extract an administrator’s password reset link, reset the account’s password, and log in as that administrator, leading to complete site takeover.
Search at Netlas.io:
👉 Link: https://nt.ls/oe1hr
👉 Dork: http.body:"plugins/translatepress-multilingual"
Vendor's advisory:
https://www.wordfence.com/blog/2026/08/400000-wordpress-sites-affected-by-account-takeover-vulnerability-in-translatepress-wordpress-plugin/
Post #620
517

- 🔥 5
- ❤ 3