A vulnerability categorized as critical has been discovered in Builderall Plugin up to 3.0.1 on WordPress. Affected by this vulnerability is an unknown functionality of the component OAuth Authentication. The manipulation of the argument state results in improper access controls.
This vulnerability is identified as CVE-2026-11882. The attack can be executed remotely. There is not any exploit available.
It is advisable to upgrade the affected component.