CVE-2026-39730: Marcin Wise Chat

High severity, CVSS 7.1. EPSS: 0.3% chance of exploitation in the next 30 days.

Missing Authorization vulnerability in Marcin Wise Chat wise-chat allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Wise Chat: from n/a through 3.4.3.

Affected products

  • Marcin Wise Chat: up to and including 3.4.3

Published 2026-10-06. Last modified 2026-10-07.