CVE-2026-81787: WordPress IMPress for IDX Broker plugin <= 3.3.0 - Broken Authentication vulnerability
Published Sep 10, 2026
·Updated
Unauthenticated Broken Authentication in IMPress for IDX Broker <= 3.3.0 versions.
Affected Software
1 affected component
wordpress/IMPress for IDX Broker<=3.3.0
Event History
Sep 10, 2026
CVE Published
via MITRE·02:23 PM
Data Sourced
via MITRE·02:23 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Who can exploit this issue?
The issue is unauthenticated and remotely reachable, so an attacker does not need WordPress credentials or user interaction to attempt exploitation.
2
What security impact is indicated?
The reported CVSS vector indicates low impact to integrity and availability, with no reported confidentiality impact. The severity is medium, with a CVSS score of 6.5.
3
Which plugin versions are affected?
IMPress for IDX Broker versions through 3.3.0 are identified as affected.