Junglewise Threat Intelligence

CVE-2026-96524: MCP Server for WordPress CSRF in REST API nonce verification

CVE-2026-96524 · Severity: info · Published 2026-09-26

Vendors: Automattic.

Executive brief

The MCP Server for WordPress plugin fails to properly verify REST API request authenticity for logged-in users, allowing attackers to trick administrators into visiting a malicious page that performs unauthorized actions. An attacker can exploit this to create new administrator accounts or perform other administrative tasks on the WordPress site without permission.

Technical details

The plugin does not correctly validate WordPress REST API nonces for cookie-authenticated requests when an attacker-controllable condition is present, resulting in a Cross-Site Request Forgery (CSRF) vulnerability. An unauthenticated attacker can craft a malicious page that, when visited by a logged-in administrator, performs administrator-only actions such as creating new admin accounts. The vulnerability affects versions before 1.8.2 and is fixed in 1.8.2.

Affected products

  • Automattic MCP Server for WordPress before 1.8.2

Timeline

  • 2026-09-24: disclosed
  • 2026-09-26: patched: Version 1.8.2 released

References