AtlasMCP WordPress plugin: CSRF bug let a malicious link make a logged-in admin create a new administrator (CVE-2026-96524, CVSS 8.8)
WPScan / NVD·low signal
NVD published three CVEs on 09-26 against the 'MCP Server for WordPress' plugin (now AtlasMCP) before 1.8.2. In one, a crafted page visited by a logged-in admin could create an administrator account through the REST API. The other two let Contributor-role users change site-wide workflows and read private post titles. The fix shipped 09-23, and wordpress.org lists only about 200 active installs, so the risk is small, but the bug class applies to any site-hosted MCP bridge using cookie auth.