CVE-2026-73401: Instawp Connect

Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.

Unauthenticated Broken Access Control in InstaWP Connect <= 0.1.3.7 versions.

Affected products

  • Instawp Instawp Connect: up to and including 0.1.3.7

Published 2026-08-13. Last modified 2026-08-14.