Subscriptions
Tracking
Sign in to view the affected projects.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 20 Feb 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Psm Plugins
Psm Plugins supportcandy Wordpress Wordpress wordpress |
|
| Vendors & Products |
Psm Plugins
Psm Plugins supportcandy Wordpress Wordpress wordpress |
Fri, 20 Feb 2026 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 19 Feb 2026 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Thu, 19 Feb 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in PSM Plugins SupportCandy supportcandy allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SupportCandy: from n/a through <= 3.4.4. | |
| Title | WordPress SupportCandy plugin <= 3.4.4 - Broken Access Control vulnerability | |
| Weaknesses | CWE-862 | |
| References |
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-02-19T21:30:22.554Z
Reserved: 2026-02-02T12:20:47.811Z
Link: CVE-2026-25321
Updated: 2026-02-19T21:30:09.044Z
Status : Awaiting Analysis
Published: 2026-02-19T09:16:16.483
Modified: 2026-02-19T22:16:44.363
Link: CVE-2026-25321
No data.
OpenCVE Enrichment
Updated: 2026-02-20T10:09:02Z