CVE-2026-16979: CWE-639 Authorization Bypass Through User-Controlled Key in SmartCrawl SEO checker, analyzer & optimizer
SmartCrawl SEO checker, analyzer & optimizer WordPress plugin versions before 3.16.3 have an authorization bypass vulnerability. This flaw allows users with Subscriber role privileges to access titles of private and draft posts and enumerate stored post-meta key names without proper capability checks on two AJAX actions.
AI Analysis
Technical Summary
The SmartCrawl SEO checker, analyzer & optimizer WordPress plugin prior to version 3.16.3 does not enforce capability checks on two AJAX actions. This allows users with at least Subscriber role permissions to read titles of private and draft posts by their ID and to enumerate post-meta key names stored by the plugin. The vulnerability is classified as CWE-639 (Authorization Bypass Through User-Controlled Key).
Potential Impact
An attacker with Subscriber-level access can read sensitive information such as titles of private and draft posts and enumerate post-meta keys, potentially exposing internal content metadata. There is no indication of impact on integrity or availability. The CVSS score is 4.3 (medium severity), reflecting limited confidentiality impact without integrity or availability effects.
Mitigation Recommendations
Upgrade the SmartCrawl SEO checker, analyzer & optimizer plugin to version 3.16.3 or later where this issue is fixed. No other mitigation is indicated by the vendor advisory.
CVE-2026-16979: CWE-639 Authorization Bypass Through User-Controlled Key in SmartCrawl SEO checker, analyzer & optimizer
Description
SmartCrawl SEO checker, analyzer & optimizer WordPress plugin versions before 3.16.3 have an authorization bypass vulnerability. This flaw allows users with Subscriber role privileges to access titles of private and draft posts and enumerate stored post-meta key names without proper capability checks on two AJAX actions.
CVSS v3.1
Score 4.3medium
Affected software
SmartCrawl SEO checker, analyzer & optimizer
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The SmartCrawl SEO checker, analyzer & optimizer WordPress plugin prior to version 3.16.3 does not enforce capability checks on two AJAX actions. This allows users with at least Subscriber role permissions to read titles of private and draft posts by their ID and to enumerate post-meta key names stored by the plugin. The vulnerability is classified as CWE-639 (Authorization Bypass Through User-Controlled Key).
Potential Impact
An attacker with Subscriber-level access can read sensitive information such as titles of private and draft posts and enumerate post-meta keys, potentially exposing internal content metadata. There is no indication of impact on integrity or availability. The CVSS score is 4.3 (medium severity), reflecting limited confidentiality impact without integrity or availability effects.
Mitigation Recommendations
Upgrade the SmartCrawl SEO checker, analyzer & optimizer plugin to version 3.16.3 or later where this issue is fixed. No other mitigation is indicated by the vendor advisory.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- WPScan
- Date Reserved
- 2026-07-24T08:34:55.539Z
- State
- PUBLISHED
Threat ID: 6a854e91c6e8be033248b271
Added to database: 08/19/2026, 06:34:57 UTC
Last enriched: 09/11/2026, 09:49:06 UTC
Last updated: 10/03/2026, 02:46:03 UTC
Views: 59
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.