CVE-2026-4283 | legalweb WP DSGVO Tools Plugin up to 3.1.38 on WordPress Shortcode username/email authorization
A vulnerability has been found in legalweb WP DSGVO Tools Plugin up to 3.1.38 on WordPress and classified as critical. This vulnerability affects unknown code of the component Shortcode Handler. This manipulation of the argument username/email causes missing authorization.
This vulnerability appears as CVE-2026-4283. The attack may be initiated remotely. There is no available exploit.
The affected component should be upgraded.