CVE-2026-42379: WordPress Templately plugin <= 3.6.1 - Sensitive Data Exposure vulnerability
Published Apr 27, 2026
·Updated
Insertion of Sensitive Information Into Sent Data vulnerability in WPDeveloper Templately allows Retrieve Embedded Sensitive Data.This issue affects Templately: from n/a through 3.6.1.
Affected Software
1 affected component
WPDeveloper Templately<=3.6.1
Remediation
Information
Update the WordPress Templately Plugin to the latest available version (at least 3.6.2).
Event History
Apr 27, 2026
CVE Published
via MITRE·08:26 AM
Data Sourced
via MITRE·08:26 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·09:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-42379?
CVE-2026-42379 is classified as a vulnerability associated with sensitive data exposure affecting versions of the Templately plugin up to 3.6.1.
2
How do I fix CVE-2026-42379?
To fix CVE-2026-42379, update the Templately plugin to the latest version that addresses this vulnerability.
3
What data is affected by CVE-2026-42379?
CVE-2026-42379 allows for the retrieval of embedded sensitive data through the Templately plugin.
4
Who is affected by CVE-2026-42379?
Users of the WPDeveloper Templately plugin who are running versions 3.6.1 or earlier are affected by CVE-2026-42379.
5
What versions of Templately are impacted by CVE-2026-42379?
CVE-2026-42379 affects the Templately plugin from versions prior to or equal to 3.6.1.