CVE-2026-1492 is a vulnerability tracked by ThreatCluster, appearing in 2 threat clusters built from 5 intelligence report mentions.
CVE-2026-1492 is a vulnerability tracked across 2 threat clusters and 5 intelligence report mentions on ThreatCluster. First observed March 5, 2026; most recent activity April 13, 2026.
A critical vulnerability, tracked as CVE-2026-1492, has been discovered in the User Registration & Membership plugin for WordPress. This flaw enables remote attackers to bypass authentication and gain full…
A critical vulnerability (CVE-2026-1492) in the User Registration & Membership plugin, used by over 60,000 WordPress sites, is being actively exploited by hackers to create unauthorized admin accounts. The vulnerability…
CVE-2026-1492 is a vulnerability tracked by ThreatCluster, appearing in 2 threat clusters built from 5 intelligence report mentions.
The most recent intelligence report mentioning CVE-2026-1492 on ThreatCluster is dated April 13, 2026. Activity was first observed March 5, 2026, giving a tracked span from then to April 13, 2026.
Across ThreatCluster reporting, CVE-2026-1492 most frequently co-occurs with Data Breach, Malware, Phishing, Zero-day Exploit, CVE-2026-23550, among 10 tracked related entities.
The most significant recent cluster is “Critical CVE-2026-1492 Vulnerability in WordPress Plugin Allows Admin Takeover” (2 articles · Updated April 13, 2026). CVE-2026-1492 appears across 2 threat clusters in total, listed above with sources.
CVE-2026-1492 appears in 5 intelligence report mentions across 2 deduplicated threat clusters, aggregated from 17,000+ monitored sources.