Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update the WordPress WP Media folder Addon Plugin to the latest available version (at least 4.0.2).
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 26 Jun 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Joomunited
Joomunited wp Media Folder Wordpress Wordpress wordpress |
|
| Vendors & Products |
Joomunited
Joomunited wp Media Folder Wordpress Wordpress wordpress |
Thu, 18 Jun 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 17 Jun 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unauthenticated Arbitrary File Download in WP Media folder Addon <= 4.0.1 versions. | |
| Title | WordPress WP Media folder Addon plugin <= 4.0.1 - Arbitrary File Download vulnerability | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-06-17T15:36:39.634Z
Reserved: 2026-05-27T10:28:56.262Z
Link: CVE-2026-9690
Updated: 2026-06-17T15:36:33.396Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-26T07:30:05Z