This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
No vendor fix or workaround currently provided.
OpenCVE Recommended Actions
- Update the PublishPress Capabilities plugin to version 2.50.0 or newer.
- Apply the principle of least privilege by reducing editor capabilities or removing the editor role where not required.
- If patching is delayed, restrict editor access to sensitive plugin settings or temporarily disable the vulnerability‑prone functionality until an update can be applied.
Generated by OpenCVE AI on August 6, 2026 at 15:24 UTC.
Tracking
Sign in to view the affected projects.
No advisories yet.
No reference.
Thu, 06 Aug 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Editor Privilege Escalation in PublishPress Capabilities <= 2.45.0 versions. | This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| Title | WordPress PublishPress Capabilities plugin <= 2.45.0 - Privilege Escalation vulnerability | |
| Weaknesses | CWE-266 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Thu, 06 Aug 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Publishpress
Publishpress capabilities Wordpress Wordpress wordpress |
|
| Vendors & Products |
Publishpress
Publishpress capabilities Wordpress Wordpress wordpress |
Thu, 06 Aug 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Editor Privilege Escalation in PublishPress Capabilities <= 2.45.0 versions. | |
| Title | WordPress PublishPress Capabilities plugin <= 2.45.0 - Privilege Escalation vulnerability | |
| Weaknesses | CWE-266 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: REJECTED
Assigner: Patchstack
Published:
Updated: 2026-08-06T17:32:15.388Z
Reserved: 2026-02-25T12:14:47.650Z
Link: CVE-2026-28183
No data.
Status : Rejected
Published: 2026-08-06T15:16:54.063
Modified: 2026-08-06T22:17:01.720
Link: CVE-2026-28183
No data.
OpenCVE Enrichment
Updated: 2026-08-06T17:30:16Z
No weakness.