This issue affects RD Station: from n/a through 5.6.0.
Project Subscriptions
No data.
No advisories yet.
Solution
Update the WordPress RD Station Plugin to the latest available version (at least 5.7.0).
Workaround
No workaround given by the vendor.
Tue, 16 Jun 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 16 Jun 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Control of Generation of Code ('Code Injection') vulnerability in Filipe Nasc RD Station allows Remote Code Inclusion. This issue affects RD Station: from n/a through 5.6.0. | |
| Title | WordPress RD Station plugin <= 5.6.0 - Remote Code Execution (RCE) vulnerability | |
| Weaknesses | CWE-94 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-06-16T16:15:18.293Z
Reserved: 2026-06-01T15:29:19.865Z
Link: CVE-2026-49774
Updated: 2026-06-16T16:15:14.116Z
Status : Deferred
Published: 2026-06-16T10:16:27.747
Modified: 2026-06-16T14:52:36.287
Link: CVE-2026-49774
No data.
OpenCVE Enrichment
No data.