Skip to content
Yoast SEO Premium and RepairBuddy Plugins Vulnerable to Remote Code Execution

Yoast SEO Premium and RepairBuddy Plugins Vulnerable to Remote Code Execution

First seen 17 Sep 2026, 13:33 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster September 17, 2026 at 14:28 UTC
  • Yoast SEO Premium and RepairBuddy plugins are vulnerable to RCE.
  • Authenticated users can exploit these vulnerabilities to execute arbitrary code.
  • Website administrators should update affected plugins immediately.

The Yoast SEO Premium plugin for WordPress is vulnerable to Remote Code Execution (RCE) in all versions up to 27.6.0, allowing authenticated attackers with author-level access to execute arbitrary code on the server. Similarly, the RepairBuddy plugin for WordPress is also affected, with versions up to 4.1224 vulnerable to RCE through insufficient validation of user input. Both vulnerabilities stem from flaws that can be exploited by authenticated users, posing significant risks to websites using these plugins. The vulnerabilities have been documented in the Wordfence Intelligence Vulnerability Database, which provides API access for tracking such threats. Administrators are urged to update their plugins to mitigate these risks. No active exploitation has been reported yet for either vulnerability. The vulnerabilities were disclosed on September 16 and 17, 2026, respectively.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-09-16
RepairBuddy vulnerability disclosed
RepairBuddy plugin versions up to 4.1224 found vulnerable to RCE due to insufficient input validation.
Wordfence
2026-09-17
Yoast SEO Premium vulnerability disclosed
Yoast SEO Premium plugin versions up to 27.6.0 identified with RCE vulnerability allowing code execution by authenticated users.
Wordfence

More articles in this cluster (5)