PT-2026-20762 · Stellarwp · Ithemes Sync

Theviper

·

Published

2026-02-19

·

Updated

2026-02-19

·

CVE-2026-27056

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions StellarWP iThemes Sync versions through 3.2.8
Description An authorization issue exists in StellarWP iThemes Sync. The issue involves incorrectly configured access control security levels, potentially allowing unauthorized access.
Recommendations Update StellarWP iThemes Sync to a version later than 3.2.8.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2026-27056

Affected Products

Ithemes Sync