Vulnerabilities > Amentotech > Workreap > 2.6.4

DATE CVE VULNERABILITY TITLE RISK
2025-03-12 CVE-2024-13446 Authentication Bypass Using an Alternate Path or Channel vulnerability in Amentotech Workreap
The Workreap plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.2.5.
network
low complexity
amentotech CWE-288
critical
9.8