← WordPress Vulnerabilities
WordPress security by component

Welcome Software Publishing

Welcome Software Publishing is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Jun 24, 2026; the highest CVE/CNA score is 8.8.

Plugin slug: newscred-publishing

CVE-2026-4297: Welcome Software Publishing: Privilege escalation or authentication bypass

Welcome Software Publishing is affected by privilege escalation or authentication bypass. Exploitation requires at least subscriber-level access. A successful request can grant permissions or access that the caller should not possess. The published affected range is <= 0.0.31.

PublishedJun 24, 2026
Known safe version> 0.0.31
Safe version
Jun 24, 2026 CVE-2026-4297
Welcome Software Publishing: Privilege escalation or authentication bypass
Welcome Software Publishing is affected by privilege escalation or authentication bypass. Exploitation requires at least subscriber-level access. A successful request can grant permissions or access that the caller should not possess. The published affected range is <= 0.0.31.
> 0.0.31
CVE8.8
NVDPending