๐Ÿ” CVE Alert

CVE-2026-16613

UNKNOWN 0.0

GDPR Cookie Compliance < 5.1.0 - Cookie Deletion and Forced Logout via CSRF

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

The GDPR Cookie Compliance WordPress plugin before 5.1.0 expires the visitor's cookies from an action that is reachable without authentication and performs no request-origin check, allowing an attacker to log any user out and delete the site's cookies by luring them to a crafted link.

Vendor unknown
Product gdpr cookie compliance
Published Aug 5, 2026
Stay Ahead of the Next One

Get instant alerts for unknown gdpr cookie compliance

Be the first to know when new unknown vulnerabilities affecting unknown gdpr cookie compliance are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Unknown / GDPR Cookie Compliance
0 < 5.1.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
wpscan.com: https://wpscan.com/vulnerability/d9511e8a-be67-4c39-b947-7931b5569ffb/

Credits

Abdullah Kareem (cyberkareem) WPScan