CVE-2026-2126 | User Submitted Posts Plugin up to 20260113 on WordPress POST Request usp_get_submitted_category Category improper authentication
A vulnerability was found in User Submitted Posts Plugin up to 20260113 on WordPress and classified as critical. Affected by this vulnerability is the function usp_get_submitted_category of the component POST Request Handler. The manipulation of the argument Category results in improper authentication.
This vulnerability is cataloged as CVE-2026-2126. The attack may be launched remotely. There is no exploit available.