A vulnerability categorized as problematic has been discovered in mndpsingh287 Theme Editor Plugin up to 3.2 on WordPress. This affects an unknown function. Such manipulation leads to cross-site request forgery.
This vulnerability is referenced as CVE-2026-39640. It is possible to launch the attack remotely. No exploit is available.