CVE-2026-40775HIGH NVDCVSS Score 7.3Severity HIGHPublished Jun 15, 2026Vendor unknownDescriptionUnauthenticated Broken Access Control in Royal MCP <= 1.4.2 versions.Referenceshttps://patchstack.com/database/wordpress/plugin/royal-mcp/vulnerability/wordpress-royal-mcp-plugin-1-4-2-broken-access-control-vulnerability?_s_id=cve