PT-2026-4410 · WordPress · Wp Travel

Nabil Irawan

·

Published

2026-01-23

·

Updated

2026-01-24

·

CVE-2026-24568

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions WP Travel versions through 11.0.0
Description An authorization issue exists in WP Travel. The vulnerability allows exploitation of incorrectly configured access control security levels.
Recommendations Update WP Travel to a version later than 11.0.0.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2026-24568

Affected Products

Wp Travel