A vulnerability was found in uncannyowl Uncanny Automator Plugin up to 7.3.2 on WordPress and classified as critical. This affects the function ajax_fetch_labels/segments_fetch/tags_fetch/render_contact_fields. Executing a manipulation can lead to improper authorization.

This vulnerability is tracked as CVE-2026-15025. The attack can be launched remotely. No exploit exists.