This issue affects WPSubscription: from n/a through 1.9.1.
Project Subscriptions
No advisories yet.
Solution
Update the WordPress WPSubscription Plugin to the latest available version (at least 1.9.2).
Workaround
No workaround given by the vendor.
Tue, 26 May 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 26 May 2026 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Convers Lab
Convers Lab wpsubscription Wordpress Wordpress wordpress |
|
| Vendors & Products |
Convers Lab
Convers Lab wpsubscription Wordpress Wordpress wordpress |
Mon, 25 May 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Cross-Site Request Forgery (CSRF) vulnerability in Convers Lab WPSubscription allows Cross Site Request Forgery. This issue affects WPSubscription: from n/a through 1.9.1. | |
| Title | WordPress WPSubscription plugin <= 1.9.1 - Cross Site Request Forgery (CSRF) vulnerability | |
| Weaknesses | CWE-352 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-05-26T10:52:17.516Z
Reserved: 2026-01-23T12:31:51.715Z
Link: CVE-2026-24554
Updated: 2026-05-26T10:52:12.478Z
Status : Received
Published: 2026-05-25T22:16:32.763
Modified: 2026-05-25T22:16:32.763
Link: CVE-2026-24554
No data.
OpenCVE Enrichment
Updated: 2026-05-26T00:30:25Z