CVE-2026-23550: WordPress Modular DS plugin <= 2.5.1 - Privilege Escalation vulnerability
Incorrect Privilege Assignment vulnerability in Modular DS allows Privilege Escalation.This issue affects Modular DS: from n/a through 2.5.1.
Other sources
Incorrect Privilege Assignment vulnerability in Modular DS Modular DS modular-connector allows Privilege Escalation.This issue affects Modular DS: from n/a through <= 2.5.1.
— MITRE
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2026-23550?
CVE-2026-23550 is classified as a high-severity privilege escalation vulnerability.
How do I fix CVE-2026-23550?
To fix CVE-2026-23550, update the Modular DS plugin to version 2.5.2 or later.
What impact does CVE-2026-23550 have on WordPress sites?
CVE-2026-23550 allows unauthorized users to gain elevated privileges on WordPress sites running the affected plugin.
Which versions of Modular DS are affected by CVE-2026-23550?
Modular DS versions from n/a to 2.5.1 are affected by CVE-2026-23550.
Is CVE-2026-23550 actively being exploited?
As of now, there have been no confirmed reports of CVE-2026-23550 being actively exploited in the wild.