CVE-2026-14928 PUBLISHED

JS Help Desk < 3.1.4 - Subscriber+ Sensitive Information Disclosure via checkAIReplyTicketsBySubject

Assigner: WPScan
Reserved: 07.07.2026 Published: 31.07.2026 Updated: 31.07.2026

The JS Help Desk WordPress plugin before 3.1.4 does not perform authorization or ownership checks before returning support-ticket content in a nonce-gated search handler, allowing any authenticated user (Subscriber and above) to read the subject and full message body of every other user's support tickets.

Product Status

Vendor Unknown
Product JS Help Desk
Versions Default: unaffected
  • affected from 0 to 3.1.4 (excl.)

Credits

  • Muni Nitish Kumar Yaddala finder
  • WPScan coordinator

References

Problem Types

  • CWE-200 Information Exposure CWE