CVE-2026-65458

Summary

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Chouby Polylang and Chouby Polylang Pro allows Retrieve Embedded Sensitive Data.

This issue affects Polylang: through 3.8.5; Polylang Pro: through 3.8.5.

Affected Software

VendorProductVersion RangeStatus
ChoubyPolylang0 <= 3.8.5affected
ChoubyPolylang Pro0 <= 3.8.5affected

Weaknesses

  • CWE-497: CWE-497 Exposure of Sensitive System Information to an Unauthorized Control Sphere

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References