CVE-2026-24574: WordPress Export WP Page to Static HTML/CSS plugin <= 6.0.0 - Cross Site Request Forgery (CSRF) vulnerability
Published May 25, 2026
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in Recorp Export WP Page to Static HTML/CSS allows Cross Site Request Forgery. This issue affects Export WP Page to Static HTML/CSS: from n/a through 6.0.0.
Affected Software
1 affected component
Recorp Export WP Page to Static HTML/CSS<=6.0.0
Remediation
Information
Update the WordPress Export WP Page to Static HTML/CSS Plugin to the latest available version (at least 6.0.1).
Event History
May 25, 2026
CVE Published
via MITRE·09:07 PM
Data Sourced
via MITRE·09:07 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-24574?
CVE-2026-24574 has a medium severity rating of 6.5.
2
How do I fix CVE-2026-24574?
To fix CVE-2026-24574, update the WordPress Export WP Page to Static HTML/CSS plugin to version 6.0.1 or later.
3
What type of vulnerability is CVE-2026-24574?
CVE-2026-24574 is a Cross-Site Request Forgery (CSRF) vulnerability.
4
Which versions of the plugin are affected by CVE-2026-24574?
CVE-2026-24574 affects the Export WP Page to Static HTML/CSS plugin from versions n/a up to and including 6.0.0.
5
What software is impacted by CVE-2026-24574?
CVE-2026-24574 impacts the Recorp Export WP Page to Static HTML/CSS plugin.