This module should be using the the /wp-json/batch/v1 route (and rest_route=/batch/v1) rather than rely on version detection (we already have a wordpress_version_scan module). This is a CISA KEV CVE: https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-63030
This module should be using the the /wp-json/batch/v1 route (and rest_route=/batch/v1) rather than rely on version detection (we already have a wordpress_version_scan module). This is a CISA KEV CVE: https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-63030