CYBERHAWK / CVE / CVE-2026-5411

CVE-2026-5411

HIGH CVSS 8.8 other

The flaw

The WP Captcha PRO (the premium version of the Advanced Google reCAPTCHA plugin, both have the same slug) plugin for WordPress is vulnerable to arbitrary file upload in all versions up to, and including, 5.38. This is due to a capability ch

What to do

Review advisory and patch per vendor guidance.

▸ Scan my repo for CVE-2026-5411

References

First seen 2026-06-12 · Tracked by PickBits CyberHawk · Weekly CVE digest