Project Subscriptions
No advisories yet.
Solution
Update the WordPress CubeWP plugin to the latest available version (at least 1.1.28).
Workaround
No workaround given by the vendor.
Tue, 20 Jan 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 20 Jan 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 05 Jan 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Emraan Cheema
Emraan Cheema cubewp Wordpress Wordpress wordpress |
|
| Vendors & Products |
Emraan Cheema
Emraan Cheema cubewp Wordpress Wordpress wordpress |
Tue, 30 Dec 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 29 Dec 2025 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in Emraan Cheema CubeWP allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects CubeWP: from n/a through 1.1.27. | |
| Title | WordPress CubeWP plugin <= 1.1.27 - Broken Access Control vulnerability | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-01-20T14:28:27.210Z
Reserved: 2025-12-15T10:01:03.747Z
Link: CVE-2025-68036
Updated: 2025-12-30T15:54:18.512Z
Status : Awaiting Analysis
Published: 2025-12-30T00:15:52.047
Modified: 2026-01-20T15:19:34.923
Link: CVE-2025-68036
No data.
OpenCVE Enrichment
Updated: 2026-01-05T12:25:29Z