CVE-2026-32497: WordPress User Verification plugin <= 2.0.45 - Email Verification Bypass vulnerability
Published Mar 25, 2026
·Updated
Weak Authentication vulnerability in PickPlugins User Verification user-verification allows Authentication Abuse.This issue affects User Verification: from n/a through <= 2.0.45.
Affected Software
1 affected component
PickPlugins User Verification<=2.0.45
Event History
Mar 25, 2026
CVE Published
via MITRE·04:14 PM
Data Sourced
via MITRE·04:14 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-32497?
The severity of CVE-2026-32497 is classified as medium with a score of 5.3.
2
How do I fix CVE-2026-32497?
To fix CVE-2026-32497, update the PickPlugins User Verification plugin to a version greater than 2.0.45.
3
What is CVE-2026-32497?
CVE-2026-32497 is a vulnerability in the PickPlugins User Verification plugin that allows email verification bypass due to weak authentication.
4
Which versions are affected by CVE-2026-32497?
CVE-2026-32497 affects all versions of the PickPlugins User Verification plugin up to and including 2.0.45.
5
What kind of vulnerability is CVE-2026-32497?
CVE-2026-32497 is classified as a weak authentication vulnerability that allows for authentication abuse.