Source-attributed Telegram item

SIT Reports: 🔍 WP Maps Pro flaw enables unauthenticated admin creation on WordPress CVE-2026-8732...

Source-attributed Telegram post from SIT Reports: 🔍 WP Maps Pro flaw enables unauthenticated admin creation on WordPress CVE-2026-8732 affects WP Maps Pro 6.1.0 and earlier, exposing a “temporary access” AJAX...

Global Conflict

SIT Reports

@sitreports | rank 71 | Tier 3 | Fast-alert source

Fast Alert Sensor Tier 3 Fast-alert source Situation-report fast-alert perspective Fast situation reports can outrun confirmation and should be cross-checked source-attributed Telegram source claim Public Telegram post fast-alert sensor global conflict situation reports

Public Telegram broadcast channel promoted after bounded no-media handle validation on 2026-05-31.

292 views 1 forwards 0 reactions Top 81.48% in source Source rank #23 Global pct 10.45

Original English English

🔍 WP Maps Pro flaw enables unauthenticated admin creation on WordPress

CVE-2026-8732 affects WP Maps Pro 6.1.0 and earlier, exposing a “temporary access” AJAX endpoint that lets unauthenticated attackers create rogue administrator accounts and use a passwordless login URL. The bug stems from a frontend-exposed nonce check tied to vendor support access. WP Maps Pro 6.1.1 fixes the issue.

The access level granted is full site compromise: attackers can alter content, install malicious plugins, deploy web shells, and maintain persistence. Defiant says it blocked over 3,600 exploitation attempts in 24 hours, indicating active abuse rather than theoretical risk.

🛰️ Open sources - closed narratives
@sitreports

global-conflict conflict fast-alert-sensor situation-reports cve exploit shipping