CVE-2026-28555 | gVectors wpForo Forum up to 2.4.15 wpforo_close_ajax authorization (EUVD-2026-9104)
A vulnerability was found in gVectors wpForo Forum up to 2.4.15. It has been declared as critical. This affects the function wpforo_close_ajax. Such manipulation leads to missing authorization.
This vulnerability is traded as CVE-2026-28555. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.