Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total1
Critical0
High0
Medium0
Reset
Showing 1-1 of 1 records
Threat Entry Updated 2026-08-13

CVE-2026-13328 - Food Menu Plugin

The Food Menu WordPress plugin before 6.0.2 does not perform any capability or ownership check on its reservation-status update action, which is also exposed to unauthenticated users and gated only by a nonce that is publicly available to visitors, allowing unauthenticated attackers to change the status of arbitrary reservations.

PLUGIN Food Menu

CVE-2026-13328

UNKNOWN CVSS 0.0 2026-08-13
Scroll to top