CVE-2026-32520 | Andrew Munro RewardsWP Plugin up to 1.0.4 on WordPress privileges assignment
A vulnerability was found in Andrew Munro RewardsWP Plugin up to 1.0.4 on WordPress. It has been rated as critical. This affects an unknown part. The manipulation leads to incorrect privilege assignment.
This vulnerability is referenced as CVE-2026-32520. Remote exploitation of the attack is possible. No exploit is available.