CVE · Medium

CVE-2026-32461 — Really Simple Security – Simple and Performant Security (formerly Really Simple SSL) [really-simple-ssl] < 9.5.8

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2026-32461 Really Simple Security – Simple and Performant Security (formerly Really Simple SSL) [really-simple-ssl] < 9.5.8 Missing Authorization Medium 4.3 < 9.5.8 9.5.8 2026-03-13

CVE-2026-32461

A security flaw exists in Really Simple Security – Simple and Performant Security plugin for WordPress, which allows users with a minimum of Subscriber permissions to execute an unapproved operation due to the absence of capability verification on a specific function across all versions prior to 9.5.7. This vulnerability can be exploited by authenticated attackers.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.