SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-59551

HIGH · CVSS 8.5 EPSS 0.27%

Source: NVD + CISA KEV + EPSS · Published 2026-07-27 · Last synced 2026-08-26

CyberRota Analysis

AI-Generated

The vulnerability affects rtMedia for WordPress, BuddyPress, and bbPress versions up to 4.7.10, allowing an SQL injection that can be exploited by subscribers to execute arbitrary SQL commands. This could lead to unauthorized data access or manipulation, posing a significant risk to the integrity of the database. WordPress site administrators using these plugins should prioritize patching to mitigate potential exploitation.

CVE
CVE-2026-59551
Severity
HIGH
CVSS
8.5
EPSS
0.27%
WordPress

Original NVD Description

Subscriber SQL Injection in rtMedia for WordPress, BuddyPress and bbPress <= 4.7.10 versions.