CVE-2026-24524: WordPress Tablesome plugin <= 1.2.8 - Broken Access Control vulnerability
Published Jan 23, 2026
·Updated
Missing Authorization vulnerability in Essekia Tablesome tablesome allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Tablesome: from n/a through <= 1.2.8.
Affected Software
1 affected component
Essekia Tablesome<=1.2.8
Event History
Jan 23, 2026
CVE Published
via MITRE·02:28 PM
Data Sourced
via MITRE·02:28 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:16 PM
DescriptionSeverityWeakness
May 5, 58293
Event
via MITRE·11:18 AM
Frequently Asked Questions
1
What is the severity of CVE-2026-24524?
CVE-2026-24524 has a medium severity rating due to its potential for unauthorized access.
2
How do I fix CVE-2026-24524?
To fix CVE-2026-24524, update the Tablesome plugin to the latest version beyond 1.1.35.2.
3
What systems are affected by CVE-2026-24524?
CVE-2026-24524 affects the Tablesome WordPress plugin versions 1.1.35.2 and earlier.
4
What kind of attack can CVE-2026-24524 facilitate?
CVE-2026-24524 can facilitate unauthorized access to restricted areas of the WordPress site due to broken access control.
5
Is there a workaround for CVE-2026-24524?
There is no recommended workaround for CVE-2026-24524; upgrading to a secure version is the best approach.