CVE-2026-39648 | themebeez Cream Blog Plugin up to 2.1.7 on WordPress authorization
A vulnerability, which was classified as critical, was found in themebeez Cream Blog Plugin up to 2.1.7 on WordPress. The affected element is an unknown function. Such manipulation leads to missing authorization.
This vulnerability is referenced as CVE-2026-39648. It is possible to launch the attack remotely. No exploit is available.