CVE-2026-97075: Wp Media Wp Rocket
Medium severity, CVSS 6.5. EPSS: 0.2% chance of exploitation in the next 30 days.
Missing Authorization vulnerability in WP Media WP Rocket wp-rocket allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Rocket: from n/a before 3.23.5.
Affected products
- Wp Media Wp Rocket: before 3.23.5 (fixed in 3.23.5)
Published 2026-10-09. Last modified 2026-10-09.