CVE-2026-89327
FluentBoards < 2.0.15 - Board Member+ Comment Author Spoofing via 'comment_by' Parameter
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
The FluentBoards WordPress plugin before 2.0.15 does not verify that a board member submitting a comment is the user the comment is attributed to, allowing any board member to post comments that appear to be authored by another user, including administrators.
| Vendor | unknown |
| Product | fluentboards |
| Published | Sep 16, 2026 |
Stay Ahead of the Next One
Get instant alerts for unknown fluentboards
Be the first to know when new unknown vulnerabilities affecting unknown fluentboards are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Unknown / FluentBoards
0 < 2.0.15
References
Credits
vuxvinh WPScan