GDPR Cookie Compliance (CCPA, DSGVO, Cookie Consent), CVE-2026-16613
- CVE, Research URL
- Published on
- Aug 05, 2026
- Research Description
- The GDPR Cookie Compliance WordPress plugin before 5.1.0 expires the visitor's cookies from an action that is reachable without authentication and performs no request-origin check, allowing an attacker to log any user out and delete the site's cookies by luring them to a crafted link.
- Affected versions
-
max 5.1.0.
- Status
-
vulnerable