Originally published at: CVE-2026-10795: Authentication bypass in UpdraftPlus impacts sites connected to UpdraftCentral - ToolsLib Blog
CVE-2026-10795 is a high-severity authentication bypass in UpdraftPlus fixed in 1.26.5, exploitable only on sites previously connected to UpdraftCentral.