CVE-2026-94180: WordPress Advanced Ads plugin <= 2.0.26 - Sensitive Data Exposure vulnerability
Published Oct 2, 2026
·Updated
Authorization Bypass Through User-Controlled Key vulnerability in Monetizemore Advanced Ads allows Retrieve Embedded Sensitive Data.
This issue affects Advanced Ads: from n/a through 2.0.26.
Affected Software
1 affected component
Monetizemore Advanced Ads<=2.0.26
Event History
Oct 2, 2026
CVE Published
via MITRE·09:39 AM
Data Sourced
via MITRE·09:39 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:17 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What level of access does an attacker need to exploit this issue?
The attack vector requires network access and low privileges. No user interaction is required.
2
What is the likely impact if exploited?
An attacker may retrieve embedded sensitive data. The available scoring indicates low confidentiality impact, with no integrity or availability impact identified.
3
Which releases are affected?
The issue affects Monetizemore Advanced Ads through version 2.0.26. A fixed version is not provided in the available data.