CVE-2026-32558
Unauthenticated Privilege Escalation in Affiliate Pro - Affiliate Program for WooCommerce & WordPress <= 8.9.1 versions.
CVSS
9.8
Critical
EPSS
—
KEV
—
Exploit Today
0
0-100
Published: Aug 24, 2026 · Last modified: Aug 24, 2026 · CWE-266
Not enough EPSS history yet.
Unauthenticated Privilege Escalation in Affiliate Pro - Affiliate Program for WooCommerce & WordPress <= 8.9.1 versions.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-782679.8 CRI—
——0Unauthenticated Privilege Escalation in TranslatePress <= 3.3.2 versions.21hCVE-2026-325618.8 HIG—
——0Subscriber Privilege Escalation in Booking Hub <= 1.3.0 versions.11hCVE-2026-217567.2 HIG—
——0HCL Hive is affected by a broken access control vulnerability which could allow an attacker or unauthorized user to introduce unverified, malicious, or broken code directly into production environments.1dCVE-2026-666489.8 CRI—
——0Unauthenticated Privilege Escalation in Jawn <= 1.4.2 versions.1dCVE-2026-281659.8 CRI—
——0Unauthenticated Privilege Escalation in Digits <= 9.2 versions.1dCVE-2026-781586.3 MED11.0%
——3A flaw has been found in Open5GS 2.8.0. This vulnerability affects unknown code of the component AMF UEContextReleaseRequest Path Handler. Executing a manipulation can lead to improper authorization. It is possible to launch the attack remotely.1d