THREAT OPS › Threat News › Wordfence Argus Finds Critical Authentication Bypass in WPMU DEV Dashboard Plugin
Wordfence Argus Finds Critical Authentication Bypass in WPMU DEV Dashboard Plugin
<p>On August 19th, 2026, during internal research, I discovered an Authentication Bypass vulnerability in <a href="https://wpmudev.com/project/wpmu-dev-dashboard/" rel="noopener" target="_blank">WPMU DEV Dashboard</a>, a WordPress plugin with an estimated 350,000 active installations. This vulnerability makes it possible for unauthenticated attackers to gain administrator access when Hub Single-Si
MITRE ATT&CK techniques
- VulnerabilitiesT1588.006
Indicators of compromise
- 01c3929fe6b851d3cf7bda3c0215f691md5
- f97767e14ecb84ebfb6efdeaad2ee129md5
- CVE-2026-76581cve
- https://wpmudev.com/project/wpmu-dev-dashboard/url
- https://www.cve.org/CVERecord?id=CVE-2026-76581url
- www.gravatar.comdomain