CPE
An unauthenticated remote file upload vulnerability in the Cozmoslabs Profile Builder WordPress plugin (CVE-2026-82607) allows remote attackers to upload arbitrary files to the server via admin-ajax.php.