System running
Last check: 2026-08-10 03:59:48 | Auto-updates every hour
74 PoCs
CybersecPlayground | The ultimate platform for cybersecurity learning & Bug Bounty Resources

CVE-CVE-2026-15038

Severity
UNKNOWN
CVSS Score
0.0
Description

The InfiniteWP Client WordPress plugin before 1.13.6 does not properly verify the site-connection state and the authenticity of requests to its remote-management endpoint on WordPress Multisite installations, allowing unauthenticated attackers to bind their own key, hijack an administrator session, and take over the entire network, leading to remote code execution....

PoCs for CVE-CVE-2026-15038

By-Poloss..-..CVE-2026-15038-POC
General Python 0
Polosss 2026-08-09
Master Cybersecurity | Join CybersecPlayground for Cybersecurity Learning & Bug Bounty Resources