CVE-2026-96815: high-severity vulnerability in appsbd Vitepos
WordPress Vitepos plugin <= 3.5.0 - Privilege Escalation vulnerability
Published
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 7.2epss 0.3%
exploitation probability
0.3%top 77% of all CVEs
observed exploitation
nono source reports it
Custom role Privilege Escalation in Vitepos <= 3.5.0 versions.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Affected products
appsbd · ViteposRelated CVEs — appsbd Vitepos
In the same product, most dangerous first.
CVE-2025-22277HIGHWordPress Vitepos plugin <= 3.1.4 - Broken Authentication vulnerabilityEPSS 0.5%CVE-2025-39535HIGHWordPress Vitepos plugin <= 3.1.7 - Broken Authentication VulnerabilityEPSS 0.5%CVE-2024-33574MEDIUMWordPress Vitepos plugin <= 3.0.1 - Broken Access Control vulnerabilityEPSS 0.4%CVE-2026-57385HIGHWordPress Vitepos plugin <= 3.4.2 - SQL Injection vulnerabilityEPSS 0.4%CVE-2025-26750MEDIUMWordPress Vitepos Plugin <= 3.1.3 - Broken Access Control vulnerabilityEPSS 0.3%