A vulnerability, which was classified as critical, has been found in atomchat Group Chat & Video Chat Plugin up to 1.1.7 on WordPress. This vulnerability affects the function atomchat_update_auth_ajax of the component Setting Handler. The manipulation leads to missing authorization.

This vulnerability is uniquely identified as CVE-2026-1253. The attack is possible to be carried out remotely. No exploit exists.

It is advisable to upgrade the affected component.