THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-16482 (HIGH 7.5) — The rtMedia for WordPress, BuddyPress and bbPress plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'compare' parameter in all versions up to, and including, 4.7.11 due to insufficient escaping on the user supplied parameter and lack of sufficient prepa

[NVD] CVE-2026-16482 (HIGH 7.5) — The rtMedia for WordPress, BuddyPress and bbPress plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'compare' parameter in all versions up to, and including, 4.7.11 due to insufficient escaping on the user supplied parameter and lack of sufficient prepa

mednvdPublished 2026-09-12

CVE-2026-16482 CVSS: 7.5 HIGH Published: 2026-09-12T08:16:23.797

The rtMedia for WordPress, BuddyPress and bbPress plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'compare' parameter in all versions up to, and including, 4.7.11 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possib

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-16482