This issue affects WP Rentals: from n/a before 3.16.0.
Project Subscriptions
No data.
No advisories yet.
Solution
Update the WordPress WP Rentals Theme to the latest available version (at least 3.16.0).
Workaround
No workaround given by the vendor.
Fri, 04 Sep 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 04 Sep 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Authorization Bypass Through User-Controlled Key vulnerability in sc Internet Vivoo WP Rentals allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WP Rentals: from n/a before 3.16.0. | |
| Title | WordPress WP Rentals theme < 3.16.0 - Insecure Direct Object References (IDOR) vulnerability | |
| Weaknesses | CWE-639 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-09-04T18:14:33.316Z
Reserved: 2026-02-19T09:52:32.857Z
Link: CVE-2026-27432
Updated: 2026-09-04T18:14:29.986Z
Status : Deferred
Published: 2026-09-04T09:17:10.543
Modified: 2026-09-04T19:17:25.073
Link: CVE-2026-27432
No data.
OpenCVE Enrichment
Updated: 2026-09-04T11:00:11Z