CVE-2026-93529
Deferred Deferred - Pending Action

Broken Access Control in WSP MCP AI Agents Connector

Vulnerability report for CVE-2026-93529, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-23

Last updated on: 2026-09-23

Assigner: Patchstack

Description

Contributor Broken Access Control in WSP MCP &#8211; AI Agents Connector <= 2.7.0 versions.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-23
Last Modified
2026-09-23
Generated
2026-09-24
AI Q&A
2026-09-23
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
patchstack wsp_mcp_ai_agents_connector to 2.7.0 (inc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-862 The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This is a Broken Access Control vulnerability in the WordPress plugin WSP MCP – AI Agents Connector versions 2.7.0 and earlier. It allows users to access restricted pages or perform unauthorized actions, potentially viewing other users' data.

Detection Guidance

Check the installed version of the WSP MCP – AI Agents Connector plugin in your WordPress admin panel. If it is version 2.7.0 or earlier, the system is vulnerable.

Impact Analysis

An attacker could exploit this to access sensitive information or perform actions they shouldn't be able to, such as viewing other users' data. The impact is considered low severity but still requires immediate attention.

Mitigation Strategies

Update the WSP MCP – AI Agents Connector plugin to version 2.7.1 or later immediately. Enable auto-updates for the plugin if available to prevent future vulnerabilities.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-93529. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart