CVE-2026-82970

Unrestricted Upload of File with Dangerous Type vulnerability in WP Legal Pages WP Cookie Notice for GDPR, CCPA & ePrivacy Consent allows Using Malicious Files. This issue affects WP Cookie Notice for GDPR, CCPA & ePrivacy Consent: from n/a through 4.4.1.

  • Published Aug 31, 2026
  • CVSS 10.0 critical
  • 0.5% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-82970 at the National Vulnerability Database