PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
CVE

CVE-2022-0188

5.3
CVSS
Description

The CMP WordPress plugin before 4.0.19 allows any user, even not logged in, to arbitrarily change the coming soon page layout.

Attack Vector
-
Privileges Req.
-
User Interaction
-
cmp
Updated Sep 18, 2026View on NVD →
S4E scanner

CMP WordPress < 4.0.19 - Broken Access Control

CMP WordPress plugin References: https://wpscan.com/vulnerability/50b6f770-6f53-41ef-b2f3-2a58e9afd332/ Remediation: Update to version 4.0.19 or later.

Used 3.5k times · domain, subdomain, ipv4

Monitor this CVE on your assets

S4E maps published CVEs to scanners and forecasts the next disclosure window for your stack.

Create a free account →