Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
10.0

CVE-2026-65553: Spider Analyser WordPress Plugin Remote Code Execution Risk

CVE-2026-65553 · published 29 days ago
Summary

A security flaw in the Spider Analyser WordPress plugin allows hackers to execute malicious code on a website without needing a password. This could lead to sensitive data being stolen or modified. Update the plugin to version 2.1.4 or later to fix this issue.

Original advisory text
Unauthenticated Remote Code Execution (RCE) in Spider Analyser &#8211; WordPress搜索引擎蜘蛛分析插件 <= 2.1.3 versions.
Unauthenticated Remote Code Execution (RCE) in Spider Analyser &#8211; WordPress搜索引擎蜘蛛分析插件 <= 2.1.3 versions.
Severity
10.0 Critical
CVSS 3.1: 10.0 (NVD)
Exploitation
EPSS <1%
Type
CWE-94Code Injection
Timeline
Published6 Aug 2026
Updated3 Sep 2026
First seen6 Aug 2026
Sources
Monitor software like this
Free during beta