A vulnerability, which was classified as problematic , has been found in legalweb WP DSGVO Tools Plugin up to 3.1.39 on WordPress. This vulnerability affects unknown code of the component SAR Handler . This manipulation of the argument process_now/is_ajax causes missing authorization. This vulnerability is handled as CVE-2026-10034 . The attack can be initiated remotely. There is not any exploit available. It is advisable to upgrade the affected component.