CVE-2026-2488 | ProfileGrid Plugin up to 5.9.8.1 on WordPress Message pg_delete_msg mid authorization
A vulnerability marked as problematic has been reported in ProfileGrid Plugin up to 5.9.8.1 on WordPress. This impacts the function pg_delete_msg of the component Message Handler. Performing a manipulation of the argument mid results in missing authorization.
This vulnerability is cataloged as CVE-2026-2488. It is possible to initiate the attack remotely. There is no exploit available.