CVE-2026-41563: WordPress Sitemovr plugin <= 1.0.1 - Sensitive Data Exposure vulnerability
Published Oct 6, 2026
·Updated
Unauthenticated Sensitive Data Exposure in Sitemovr <= 1.0.1 versions.
Affected Software
1 affected component
WordPress Sitemovr plugin<=1.0.1
Event History
Oct 6, 2026
CVE Published
via MITRE·05:14 AM
Data Sourced
via MITRE·05:14 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:17 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Who can exploit this issue?
The issue is unauthenticated, so an attacker does not need a WordPress account or other privileges to exploit it. It is remotely reachable over the network and requires no user interaction.
2
Which plugin versions are affected?
Sitemovr versions 1.0.1 and earlier are identified as affected.
3
What is the likely impact if exploitation succeeds?
The reported impact is exposure of sensitive data, with high confidentiality impact. The provided information does not indicate integrity or availability impact.