Simple History WordPress Plugin Account Takeover (CVE-2026-7459): Subscriber-Level Access Enables Privilege Escalation
A privilege escalation vulnerability in the Simple History WordPress plugin, tracked as CVE-2026-7459, allows authenticated attackers with Subscriber-level access — the lowest WordPress user role … Read More