CYBERHAWK / CVE / CVE-2026-5415

CVE-2026-5415

HIGH CVSS 8.8 other

The flaw

The WP Captcha PRO (the premium version of the Advanced Google reCAPTCHA plugin, both have the same slug) plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 5.38. This is due to the ajax_run_to

What to do

Review advisory and patch per vendor guidance.

▸ Scan my repo for CVE-2026-5415

References

First seen 2026-06-12 · Tracked by PickBits CyberHawk · Weekly CVE digest