Project Subscriptions
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 01 Apr 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improperly implemented security check vulnerability in KAGG hCaptcha for WP allows CAPTCHA Functionality Bypass.This issue affects hCaptcha for WP: from n/a through 4.21.1. The vulnerability is limited to the CAPTCHA mechanism intended to protect a publicly accessible form from automated abuse. It does not impact WordPress-level authentication or authorization controls. | Missing Authorization vulnerability in hcaptcha hCaptcha for WP hcaptcha-for-forms-and-more allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects hCaptcha for WP: from n/a through <= 4.21.1. |
| Title | WordPress hCaptcha for WP plugin <= 4.21.1 - Access Control (CAPCTHA) bypass vulnerability | WordPress hCaptcha for WP plugin <= 4.21.1 - Broken Access Control vulnerability |
| Weaknesses | CWE-358 | CWE-862 |
| References |
Mon, 30 Mar 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-862 | |
| References |
|
Mon, 30 Mar 2026 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in hcaptcha hCaptcha for WP hcaptcha-for-forms-and-more allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects hCaptcha for WP: from n/a through <= 4.22.0. | Improperly implemented security check vulnerability in KAGG hCaptcha for WP allows CAPTCHA Functionality Bypass.This issue affects hCaptcha for WP: from n/a through 4.21.1. The vulnerability is limited to the CAPTCHA mechanism intended to protect a publicly accessible form from automated abuse. It does not impact WordPress-level authentication or authorization controls. |
| Title | WordPress hCaptcha for WP plugin <= 4.22.0 - Broken Access Control vulnerability | WordPress hCaptcha for WP plugin <= 4.21.1 - Access Control (CAPCTHA) bypass vulnerability |
| Weaknesses | CWE-358 | |
| References |
|
Fri, 20 Feb 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Fri, 20 Feb 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcaptcha
Hcaptcha hcaptcha For Wp Wordpress Wordpress wordpress |
|
| Vendors & Products |
Hcaptcha
Hcaptcha hcaptcha For Wp Wordpress Wordpress wordpress |
Thu, 19 Feb 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in hcaptcha hCaptcha for WP hcaptcha-for-forms-and-more allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects hCaptcha for WP: from n/a through <= 4.22.0. | |
| Title | WordPress hCaptcha for WP plugin <= 4.22.0 - Broken Access Control vulnerability | |
| Weaknesses | CWE-862 | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-04-01T14:14:44.993Z
Reserved: 2026-02-02T12:20:47.810Z
Link: CVE-2026-25315
Updated: 2026-02-20T16:26:14.176Z
Status : Awaiting Analysis
Published: 2026-02-19T09:16:15.773
Modified: 2026-04-01T15:22:13.880
Link: CVE-2026-25315
No data.
OpenCVE Enrichment
Updated: 2026-02-20T10:09:07Z