CVE-2026-62088
Insertion of Sensitive Information Into Sent Data vulnerability in 10up ElasticPress allows Retrieve Embedded Sensitive Data. This issue affects ElasticPress: from n/a through 5.3.4.
- Published Sep 11, 2026
- CVSS 5.3 medium
- 0.3% chance of exploitation in the next 30 days (EPSS)