← WordPress Vulnerabilities
WordPress security by component

Tablesome Table

Tablesome Table is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Jul 28, 2026; the highest CVE/CNA score is 7.5.

Plugin slug: tablesome-table

CVE-2026-14924: Tablesome permits unauthenticated creation and overwrite of published content

Tablesome before 1.1.31 exposes an AJAX operation without authentication, a capability check or nonce validation. An unauthenticated attacker can submit content that reaches the plugin's post-creation or update operation, create new published posts, or overwrite arbitrary existing posts and pages. The WPScan CNA record does not disclose the AJAX action, request parameters or vulnerable function, so those mechanics remain unknown.

PublishedJul 28, 2026
Known safe version1.1.31
Safe version
Jul 28, 2026 CVE-2026-14924
Tablesome permits unauthenticated creation and overwrite of published content
Tablesome before 1.1.31 exposes an AJAX operation without authentication, a capability check or nonce validation. An unauthenticated attacker can submit content that reaches the plugin's post-creation or update operation, create new published posts, or overwrite arbitrary existing posts and pages. The WPScan CNA record does not disclose the AJAX action, request parameters or vulnerable function, so those mechanics remain unknown.
1.1.31
CVE7.5
NVDPending