What happened
Two Patchstack-documented missing-authorization (CWE-862) flaws in niche WordPress MCP plugins: IATO MCP lets Contributor-level users invoke actions reserved for higher roles, and WDS MCP Content Manager (<=3.10.4) has a Contributor broken-access-control flaw. Both let low-privileged authenticated users reach MCP content-management capabilities intended for admins.
Why it matters
MCP plugins bridge WordPress content into AI agents; contributor-level access to MCP management capabilities lets a low-privilege user manipulate content/agent-facing tool configuration.
Attack vector
Authenticated low-privilege (Contributor) calls to plugin endpoints lacking capability checks.
Affected systems
IATO MCP <= 1.11.0 (CVE-2026-32582); WDS MCP Content Manager <= 3.10.4 (CVE-2026-39599)
Mitigation
Update plugin to fixed releases / restrict contributor access; contacts Patchstack for advisory details.