Dasinfomedia WPCHURCH Privilege Escalation Vulnerability

Vulnerability

A privilege escalation vulnerability has been identified in the Dasinfomedia WPCHURCH WordPress plugin, affecting versions through 2.7.0. This vulnerability allows low-privileged users to escalate their privileges, potentially leading to full control of the website.

Impact

Exploitation of this vulnerability could allow a low-privileged user to gain higher privileges, with the possibility of taking full control of the website.

Remediation

Users are advised to update to a version of the WPCHURCH plugin that is later than 2.7.0. For those using Patchstack, a mitigation rule has been issued to block attacks until an official fix can be safely applied.

Added: Jan 7, 2026, 2:37 PM
Updated: Jan 7, 2026, 2:37 PM

Vulnerability Rating

Custom Algorithm
spread
1.0
impact
7.5
exploitability
5.4
remediation
7.9
relevance
1.8
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.