This issue affects The Grid: from n/a through 2.8.0.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update the WordPress The Grid plugin to the latest available version (at least 2.8.1).
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 01 Sep 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Subscriber Privilege Escalation in The Grid <= 2.7.9.1 versions. | Incorrect Privilege Assignment vulnerability in ThemeOne The Grid allows Privilege Escalation. This issue affects The Grid: from n/a through 2.8.0. |
| Title | WordPress The Grid plugin <= 2.7.9.1 - Privilege Escalation vulnerability | WordPress The Grid plugin <= 2.8.0 - Privilege Escalation vulnerability |
Tue, 18 Aug 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 18 Aug 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Theme-one
Theme-one the Grid Wordpress Wordpress wordpress |
|
| Vendors & Products |
Theme-one
Theme-one the Grid Wordpress Wordpress wordpress |
Tue, 18 Aug 2026 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Subscriber Privilege Escalation in The Grid <= 2.7.9.1 versions. | |
| Title | WordPress The Grid plugin <= 2.7.9.1 - Privilege Escalation vulnerability | |
| Weaknesses | CWE-266 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-09-01T14:41:15.534Z
Reserved: 2026-02-25T12:14:47.651Z
Link: CVE-2026-28191
Updated: 2026-08-18T19:40:36.997Z
Status : Deferred
Published: 2026-08-18T14:17:02.057
Modified: 2026-09-01T15:17:14.200
Link: CVE-2026-28191
No data.
OpenCVE Enrichment
Updated: 2026-09-01T18:30:06Z