← Back to CVE search

CVE-2025-14545

Yandex Market WordPress plugin

Description

The YML for Yandex Market WordPress plugin before 5.0.26 is vulnerable to Remote Code Execution via the feed generation process.

CVSS 6.5EPSS 0.266%Risk 0.67
View source
Published
2026-04-10 07:16:19
Affected versions
<5.0.26
Type
Installed app
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N