6.5
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Description
The YML for Yandex Market WordPress plugin before 5.0.26 is vulnerable to Remote Code Execution via the feed generation process.
Basic Information
ID
CVE-2025-14545
Source
WPScan
Published
Apr 10, 2026 at 06:00
Modified
Apr 10, 2026 at 18:37
Affected Product
Vendor
Unknown
Product
YML for Yandex Market
Affected Versions
Unknown YML for Yandex Market 0