Known vulnerabilities in the Wpstream plugin
6 security advisories have been published for the Wpstream plugin. Each entry below states what an attacker can do, what privilege they need, and the version the issue was fixed in.
- Wpstream - Arbitrary File Upload (CVE-2026-39527) MEDIUM
- Wpstream - Broken Access Control (CVE-2026-39526) MEDIUM
- Wpstream - Broken Access Control (CVE-2025-68521) MEDIUM
- Wpstream - Broken Access Control (CVE-2025-68522) MEDIUM
- Wpstream - Cross-Site Request Forgery (CSRF) (CVE-2023-27458) MEDIUM
- Wpstream - Cross-Site Request Forgery (CSRF) (CVE-2023-38512) MEDIUM