What is CVE-2026-59549?
CVE-2026-59549 is an unauthenticated SQL injection vulnerability in rtMedia plugin for WordPress, BuddyPress, and bbPress versions <= 4.7.10. This affects users of these platforms and requires an immediate update to the latest patched version.
Azərbaycanca: CVE-2026-59549, rtMedia plagininin 4.7.10 və daha əvvəlki versiyalarında autentifikasiya olunmadan SQL injection zəifliyidir. Bu, WordPress, BuddyPress və bbPress istifadəçilərinə təsir edə bilər; dərhal plagini ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-89
FAQ2
Which plugin is affected by CVE-2026-59549?
CVE-2026-59549 is a vulnerability affecting the rtMedia plugin for WordPress, BuddyPress, and bbPress platforms.
Which versions of the rtMedia plugin are vulnerable to this SQL injection?
Versions 4.7.10 and earlier of the rtMedia plugin are vulnerable to this unauthenticated SQL injection.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.