Description
Customer Privilege Escalation in Dokan <= 5.0.2 versions.
Published: 2026-06-15
Score: 8.8 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

Update the WordPress Dokan Plugin to the latest available version (at least 5.0.3).

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 15 Jun 2026 20:30:00 +0000

Type Values Removed Values Added
Description Customer Privilege Escalation in Dokan <= 5.0.2 versions.
Title WordPress Dokan plugin <= 5.0.2 - Privilege Escalation vulnerability
Weaknesses CWE-266
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: Patchstack

Published:

Updated: 2026-06-15T20:19:28.889Z

Reserved: 2026-06-01T15:29:19.865Z

Link: CVE-2026-49780

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2026-06-15T21:17:22.520

Modified: 2026-06-15T21:24:32.790

Link: CVE-2026-49780

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses
  • CWE-266

    Incorrect Privilege Assignment