CVE-2026-1934 | stylemix Motors Plugin up to 1.4.103 on WordPress User Meta Update stm_save_user_extra_fields user_id authorization
A vulnerability, which was classified as critical, has been found in stylemix Motors Plugin up to 1.4.103 on WordPress. Affected by this issue is the function stm_save_user_extra_fields of the component User Meta Update Handler. Performing a manipulation of the argument user_id results in missing authorization.
This vulnerability is cataloged as CVE-2026-1934. It is possible to initiate the attack remotely. There is no exploit available.