cleantalk
Vulnerabilities and Security Researches

3D viewer – Embed 3D Models on WordPress, CVE-2026-40729

CVE, Research URL

CVE-2026-40729

Published on
Apr 15, 2026
Research Description
Missing Authorization vulnerability in bPlugins 3D viewer – Embed 3D Models 3d-viewer allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects 3D viewer – Embed 3D Models: from n/a through <= 1.8.5.
Affected versions
max 1.8.6.
Status
vulnerable