CVE WATCH / VULNERABILITY DETAIL
CVE-2026-105892
CRITICALCVSS 9.8NVD feed
Published 10 October 2026 · tracked since 11 October 2026
Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in rtCamp Inc. rtMedia for WordPress, BuddyPress and bbPress buddypress-media allows Path Traversal.This issue affects rtMedia for WordPress, BuddyPress and bbPress: from n/a through 4.7.13.
References
- NVD — National Vulnerability Database
- CVE.org record (MITRE)
- CISA Known Exploited Vulnerabilities catalog
Latest tracked vulnerabilities
- CVE-2026-62044 HIGH 7.2
- CVE-2026-104398 CRITICAL 9.8
- CVE-2026-108546 HIGH 7.5
- CVE-2026-94676 HIGH 7.2
- CVE-2026-105885 HIGH 8.8
- CVE-2026-108162 MEDIUM 6.5
- CVE-2026-108164 MEDIUM 6.5
- CVE-2026-91136 HIGH 7.5
- CVE-2026-96662 HIGH 7.5
- CVE-2026-93945 CRITICAL 9.8