CVE-2026-66666EPSS p20.0%
CVE-2026-66666CVE-2026-66666
Description
Insertion of Sensitive Information Into Sent Data vulnerability in Automattic WordPress allows Retrieve Embedded Sensitive Data.
This issue affects WordPress: from 7.1 through 7.1.2, from 7.0 through 7.0.6, from 6.9 through 6.9.9, from 6.8 through 6.8.10, from 6.7 through 6.7.9, and from 6.6 through 6.6.9.
Scoring
| EPSS | 0.29% probability of exploitation · percentile 20.0% · 2026-10-10T12:00:23Z |
| Last modified | 2026-10-06 |