CVE-2026-32566
Unauthenticated Privilege Escalation in ACPT (Pro) - Custom Post Types Plugin for WordPress <= 2.0.63 versions.
CVSS
9.8
Critical
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Aug 27, 2026 · Last modified: Aug 27, 2026 · CWE-266
Not enough EPSS history yet.
Unauthenticated Privilege Escalation in ACPT (Pro) - Custom Post Types Plugin for WordPress <= 2.0.63 versions.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-782717.2 HIG—
———Editor Privilege Escalation in FluentCRM Pro <= 3.1.12 versions.12hCVE-2026-782679.8 CRI19.3%
——6Unauthenticated Privilege Escalation in TranslatePress <= 3.3.2 versions.8hCVE-2026-325618.8 HIG23.8%
——7Subscriber Privilege Escalation in Booking Hub <= 1.3.0 versions.2dCVE-2026-217567.2 HIG23.9%
——7HCL Hive is affected by a broken access control vulnerability which could allow an attacker or unauthorized user to introduce unverified, malicious, or broken code directly into production environments.3dCVE-2026-666489.8 CRI18.6%
——6Unauthenticated Privilege Escalation in Jawn <= 1.4.2 versions.3dCVE-2026-325589.8 CRI18.6%
——6Unauthenticated Privilege Escalation in Affiliate Pro - Affiliate Program for WooCommerce & WordPress <= 8.9.1 versions.3d