CVE-2026-4056 | wpeverest User Registration & Membership Plugin up to 5.1.4 on WordPress REST API Endpoint check_permissions authorization (EUVD-2026-14656 / CNNVD-202603-4627)
A vulnerability classified as critical has been found in wpeverest User Registration & Membership Plugin up to 5.1.4 on WordPress. The impacted element is the function check_permissions of the component REST API Endpoint. This manipulation causes missing authorization.
This vulnerability is registered as CVE-2026-4056. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to upgrade the affected component.