CVE-2026-22487 - WordPress Speed Kit plugin <= 2.0.2 - broken access control vulnerability - 2025 Update

CVE-2026-22487 - WordPress Speed Kit plugin <= 2.0.2 - broken access control vulnerability - 2025 Update

CVE ID : CVE-2026-22487 Published : Jan. 8, 2026, 5:15 p.m. | 1 hour, 39 minutes ago Description : Missing Authorization vulnerability in baqend Speed Kit allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Speed Kit: from n/a through 2.0.2. Severity: 4.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Published
Jan. 8, 2026

Source: Telegram CVE Monitor