← WordPress Vulnerabilities
WordPress security by component

WP Encryption – Lifetime Free SSL Cert & HTTPS, Force SSL / HTTPS Redirect, SSL Security

WP Encryption – Lifetime Free SSL Cert & HTTPS, Force SSL / HTTPS Redirect, SSL Security is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Jul 23, 2026; the highest CVE/CNA score is 4.4.

Plugin slug: wp-letsencrypt-ssl

CVE-2026-15786: WP Encryption – Lifetime Free SSL Cert & HTTPS, Force SSL / HTTPS Redirect, SSL Security: Filesystem traversal

WP Encryption – Lifetime Free SSL Cert & HTTPS, Force SSL / HTTPS Redirect, SSL Security is affected by filesystem traversal. Exploitation requires at least administrator-level access. A crafted path can escape the intended directory and reach files or directories elsewhere on the server. The published affected range is <= 7.8.6.6.

PublishedJul 23, 2026
Known safe version> 7.8.6.6
Safe version
Jul 23, 2026 CVE-2026-15786
WP Encryption – Lifetime Free SSL Cert & HTTPS, Force SSL / HTTPS Redirect, SSL Security: Filesystem traversal
WP Encryption – Lifetime Free SSL Cert & HTTPS, Force SSL / HTTPS Redirect, SSL Security is affected by filesystem traversal. Exploitation requires at least administrator-level access. A crafted path can escape the intended directory and reach files or directories elsewhere on the server. The published affected range is <= 7.8.6.6.
> 7.8.6.6
CVE4.4
NVDPending