WordPress security by component
WP Encryption – Lifetime Free SSL Cert & HTTPS, Force SSL / HTTPS Redirect, SSL Security
Plugin description
WP Encryption – Lifetime Free SSL Cert & HTTPS, Force SSL / HTTPS Redirect, SSL Security is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Jul 23, 2026; the highest CVE/CNA score is 4.4.
Plugin slug:
wp-letsencrypt-sslLatest vulnerability
CVE-2026-15786: WP Encryption – Lifetime Free SSL Cert & HTTPS, Force SSL / HTTPS Redirect, SSL Security: Filesystem traversal
WP Encryption – Lifetime Free SSL Cert & HTTPS, Force SSL / HTTPS Redirect, SSL Security is affected by filesystem traversal. Exploitation requires at least administrator-level access. A crafted path can escape the intended directory and reach files or directories elsewhere on the server. The published affected range is <= 7.8.6.6.
| Safe version |
|
||
|---|---|---|---|
| Jul 23, 2026 |
CVE-2026-15786
WP Encryption – Lifetime Free SSL Cert & HTTPS, Force SSL / HTTPS Redirect, SSL Security: Filesystem traversal
WP Encryption – Lifetime Free SSL Cert & HTTPS, Force SSL / HTTPS Redirect, SSL Security is affected by filesystem traversal. Exploitation requires at least administrator-level access. A crafted path can escape the intended directory and reach files or directories elsewhere on the server. The published affected range is <= 7.8.6.6.
|
> 7.8.6.6 |
CVE4.4
NVDPending
|