CVE-2026-5488 | smub ExactMetrics Plugin up to 9.1.2 on WordPress profile.php get_ads_access_token authorization
A vulnerability, which was classified as problematic, was found in smub ExactMetrics Plugin up to 9.1.2 on WordPress. The impacted element is the function get_ads_access_token of the file profile.php. The manipulation results in missing authorization.
This vulnerability is identified as CVE-2026-5488. The attack can be executed remotely. There is not any exploit available.
You should upgrade the affected component.