Description
Authentication Bypass Using an Alternate Path or Channel vulnerability in Metagauss ProfileGrid profilegrid-user-profiles-groups-and-communities allows Password Recovery Exploitation.This issue affects ProfileGrid : from n/a through <= 5.9.9.6.
Published: 2026-07-13
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability allows an attacker to bypass normal authentication by exploiting an alternate password recovery channel. When triggered, an attacker can reset a user’s password without having prior knowledge of the user’s credentials, leading to unauthorized access to WordPress accounts and the data they can reach. This issue is identified as a CWE-288, an Authentication Bypass weakness that directly compromises confidentiality and integrity of the system.

Affected Systems

The flaw affects the Metagauss ProfileGrid plugin for WordPress, version 5.9.9.6 and earlier. Users who have not upgraded beyond this release are vulnerable. No specific operating system or WordPress core version limitations are listed.

Risk and Exploitability

The CVSS score of 7.5 reflects a significant threat level. The EPSS score being below 1% suggests that exploitation probability is currently low, and the flaw is not listed in the CISA KEV catalog. Nonetheless, the ability to reset passwords without authentication makes the vulnerability a high‑risk vector for credential compromise. Based on the description, it is inferred that attackers could leverage the web interface’s password recovery feature to launch the exploit remotely, reachable endpoints and no additional mitigations.

Generated by OpenCVE AI on August 1, 2026 at 10:43 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the ProfileGrid plugin to the latest version that removes the authentication bypass flaw
  • Disable or restrict the password recovery functionality if it is not needed for your site’s users
  • Enable multi‑factor authentication for all administrative WordPress accounts to add an additional barrier
  • Monitor password reset logs for anomalous activity and investigate any unexpected resets

Generated by OpenCVE AI on August 1, 2026 at 10:43 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 13 Jul 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 13 Jul 2026 12:30:00 +0000

Type Values Removed Values Added
First Time appeared Metagauss
Metagauss profilegrid
Wordpress
Wordpress wordpress
Vendors & Products Metagauss
Metagauss profilegrid
Wordpress
Wordpress wordpress

Mon, 13 Jul 2026 10:00:00 +0000

Type Values Removed Values Added
Description Authentication Bypass Using an Alternate Path or Channel vulnerability in Metagauss ProfileGrid profilegrid-user-profiles-groups-and-communities allows Password Recovery Exploitation.This issue affects ProfileGrid : from n/a through <= 5.9.9.6.
Title WordPress ProfileGrid plugin <= 5.9.9.6 - Broken Authentication vulnerability
Weaknesses CWE-288
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N'}


Subscriptions

Metagauss Profilegrid
Wordpress Wordpress
cve-icon MITRE

Status: PUBLISHED

Assigner: Patchstack

Published:

Updated: 2026-07-13T13:31:33.330Z

Reserved: 2026-06-25T08:03:56.313Z

Link: CVE-2026-57697

cve-icon Vulnrichment

Updated: 2026-07-13T13:31:30.728Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-01T10:45:03Z

Weaknesses
  • CWE-288

    Authentication Bypass Using an Alternate Path or Channel