PT-2026-27849 · WordPress · Bdthemes Ultimate Post Kit

Published

2026-03-25

·

Updated

2026-03-30

·

CVE-2026-24362

CVSS v3.1

6.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions bdthemes Ultimate Post Kit versions through 4.0.21
Description An authorization issue exists in bdthemes Ultimate Post Kit, allowing exploitation due to incorrectly configured access control security levels. The issue impacts the ultimate-post-kit component.
Recommendations Update bdthemes Ultimate Post Kit to a version later than 4.0.21.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2026-24362

Affected Products

Bdthemes Ultimate Post Kit