CVE-2026-65457 | yoomoney ЮKassa Plugin up to 2.16.1 on WordPress Subscriber access control
A vulnerability identified as critical has been detected in yoomoney ЮKassa Plugin up to 2.16.1 on WordPress. This affects an unknown part of the component Subscriber. This manipulation causes improper access controls.
This vulnerability is registered as CVE-2026-65457. Remote exploitation of the attack is possible. No exploit is available.