CVE-2026-75799 PUBLISHED

YAHMAN Add-ons < 0.9.31 - Unauthenticated Arbitrary File Upload via Blog Card Cache

Assigner: WPScan
Reserved: 18.08.2026 Published: 23.09.2026 Updated: 23.09.2026

The YAHMAN Add-ons WordPress plugin before 0.9.31 does not validate the type of the remote files it caches in a publicly accessible directory, allowing unauthenticated attackers to write arbitrary PHP files on the server and achieve RCE when the relevant feature is enabled.

Product Status

Vendor Unknown
Product YAHMAN Add-ons
Versions Default: unaffected
  • affected from 0 to 0.9.31 (excl.)

Credits

  • Artus KG finder
  • WPScan coordinator

References

Problem Types

  • CWE-94 Improper Control of Generation of Code ('Code Injection') CWE