plugin

Disable Admin Notices Vulnerabilities

2 known security issues reported for the Disable Admin Notices WordPress plugin. Most recent disclosed Feb 24, 2026.

2 medium

Running Disable Admin Notices on your site? Check whether your installed version is affected.

Scan your site free

Disable Admin Notices – Hide Dashboard Notifications <= 1.4.2 - Cross-Site Request Forgery to Plugin Settings Update

medium

The Disable Admin Notices – Hide Dashboard Notifications plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.4.2. This is due to missing nonce validation in the `showPageContent()` function. This makes it possible for unauthenticated attackers to add arbitrary URLs t...

CVSS:
4.3
Affected:
up to 1.4.2
Fixed in:
1.4.3
Disclosed:
Feb 24, 2026

CVE-2026-2410 on NVD →

Disable Admin Notices individually <= 1.4.0 - Cross-Site Request Forgery

medium

The Disable Admin Notices individually plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.4.0. This is due to missing or incorrect nonce validation on a function. This makes it possible for unauthenticated attackers to perform an unauthorized action via a forged request...

CVSS:
4.3
Affected:
up to 1.4.0
Fixed in:
1.4.1
Disclosed:
Nov 13, 2024

CVE-2024-52420 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database