Junglewise Threat Intelligence

CVE-2026-57697: Metagauss ProfileGrid authentication bypass in password recovery

CVE-2026-57697 · Severity: high · CVSS 7.5 · Published 2026-07-13

Technologies: Metagauss ProfileGrid – User Profiles, Groups and Communities. Vendors: Metagauss.

Executive brief

Metagauss ProfileGrid is a WordPress plugin used to manage user profiles, memberships, and online communities. A security flaw in the plugin's authentication system allows unauthorized individuals to bypass security checks during the password recovery process. This could allow an attacker to gain unauthorized access to user accounts, potentially leading to a full takeover of the website if administrative accounts are targeted.

Technical details

An Authentication Bypass Using an Alternate Path or Channel (CWE-288) exists in the Metagauss ProfileGrid plugin through version 5.9.9.6. The vulnerability resides in the password recovery logic, where insufficient validation allows an attacker to bypass standard authentication requirements. An unauthenticated remote attacker can exploit this flaw to reset passwords or gain unauthorized access to accounts. The issue is resolved in version 5.9.9.7.

Affected products

  • Metagauss ProfileGrid - User Profiles, Groups and Communities <= 5.9.9.6

Timeline

  • 2026-05-18: other: Vulnerability reported by Jakub Herman
  • 2026-07-08: advisory: Patchstack advisory published
  • 2026-07-13: disclosed: CVE published to NVD

References