CVE-2026-27355MEDIUM NVDCVSS Score 5.3Severity MEDIUMPublished Jul 23, 2026Vendor unknownDescriptionUnauthenticated Broken Access Control in Ditty <= 3.1.66 versions.Referenceshttps://patchstack.com/database/wordpress/plugin/ditty-news-ticker/vulnerability/wordpress-ditty-plugin-3-1-66-broken-access-control-vulnerability?_s_id=cve