Code Injection Vulnerability in Monetizemore Advanced Ads Product
CVE-2026-54816

7.5HIGH

Key Information:

Vendor

WordPress

Vendor
CVE Published:
17 June 2026

What is CVE-2026-54816?

A code injection vulnerability has been identified in the Monetizemore Advanced Ads product, allowing unauthorized remote code execution. This issue, affecting versions from n/a to 2.0.21, can potentially enable an attacker to execute arbitrary code on the server. It is critical for users of Advanced Ads to evaluate their installations and implement necessary updates to mitigate this risk.

Affected Version(s)

Advanced Ads <= 2.0.21

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Nguyen Ba Khanh | Patchstack Bug Bounty Program
.