rtMedia for WordPress, BuddyPress and bbPress <= 4.7.9 - Missing Authorization
rtMedia for WordPress, BuddyPress and bbPress
Minimum safe version
4.7.10
Update to 4.7.10 or later to address 20 fixable vulnerabilities
rtMedia for WordPress, BuddyPress and bbPress 4.7.0 - 4.7.3 - Missing Authorization to Unauthenticated Information Disclosure via handle_rest_pre_dispatch Function
CVE-2026-25325
WordPress rtMedia for WordPress, BuddyPress and bbPress Plugin <= 4.6.18 is vulnerable to SQL Injection
rtMedia for WordPress, BuddyPress and bbPress <= 4.6.18 - Authenticated (Subscriber+) SQL Injection
CVE-2024-3293
rtMedia for WordPress, BuddyPress and bbPress < 4.6.15 - Missing Authorization to Settings Update
rtMedia for WordPress, BuddyPress and bbPress < 4.6.15 - Missing Authorization to Sensitive Information Exposure
CVE-2023-5939
CVE-2023-5931
CVE-2023-41951
rtMedia for WordPress, BuddyPress and bbPress <= 4.6.14 - Missing Authorization to Sensitive Information Exposure
rtMedia for WordPress, BuddyPress and bbPress <= 4.6.14 - Missing Authorization to Settings Update
rtMedia for WordPress, BuddyPress and bbPress <= 3.9.5 - Local File Inclusion
rtMedia for WordPress, BuddyPress and bbPress < 3.7.40 - SQL Injection
rtMedia for WordPress, BuddyPress and bbPress <= 3.10.1 - Cross-Site Scripting
rtMedia for WordPress, BuddyPress and bbPress <= 4.2 - Arbitary File Upload
wpscan.com
wpscan.com
trMedia for WordPress <= 4.2 - Unspecified Issues