CVE-2026-0974 | Orderable Plugin up to 1.20.0 on WordPress Plugin Installation install_plugin authorization
A vulnerability described as critical has been identified in Orderable Plugin up to 1.20.0 on WordPress. This affects the function install_plugin of the component Plugin Installation Handler. The manipulation results in missing authorization.
This vulnerability is identified as CVE-2026-0974. The attack can be executed remotely. There is not any exploit available.