CVE-2026-40730: WordPress ThemeGrill Demo Importer plugin <= 2.0.0.6 - Broken Access Control vulnerability
Missing Authorization vulnerability in ThemeGrill ThemeGrill Demo Importer themegrill-demo-importer allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ThemeGrill Demo Importer: from n/a through <= 2.0.0.6.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-40730?
CVE-2026-40730 is categorized as a high severity vulnerability due to its impact on access control.
How do I fix CVE-2026-40730?
To fix CVE-2026-40730, update the ThemeGrill Demo Importer plugin to the latest version or at least to version 2.0.0.7.
What types of systems are affected by CVE-2026-40730?
CVE-2026-40730 affects installations of the ThemeGrill Demo Importer plugin version 2.0.0.6 and earlier.
What is the nature of the vulnerability in CVE-2026-40730?
CVE-2026-40730 is a broken access control vulnerability that allows unauthorized access due to misconfigured security settings.
Can CVE-2026-40730 lead to data exposure?
Yes, CVE-2026-40730 can potentially lead to unauthorized exposure of sensitive information due to insufficient access controls.