6.6
CVE-2026-10821
- EPSS 0.51%
- Veröffentlicht 02.09.2026 14:16:44
- Zuletzt bearbeitet 03.09.2026 17:50:37
- Erkennungen
Yoast SEO Premium < 27.6.1 - Author+ Arbitrary .htaccess Directive Injection to RCE
Yoast SEO Premium <= 27.6.0 - Authenticated (Author+) Remote Code Execution
The Yoast SEO Premium WordPress plugin before 27.6.1 does not sanitize control characters from redirect origins before writing them to the site's Apache configuration file when the file-based redirect mode is enabled, and the redirect-creation endpoint is reachable by users with only Author-level access. This allows such users to inject arbitrary newline-delimited Apache directives into the root .htaccess file. On Apache servers that honour PHP directives, the injection can be chained with the user's own media upload (a polyglot image carrying a PHP payload) and an auto_prepend_file directive to achieve Remote Code Execution.
Mögliche Gegenmaßnahme
Yoast SEO Premium: Update to version 27.6.1, or a newer patched version
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerUnknown
≫
Produkt
Yoast SEO Premium
Default Statusunaffected
Version
0
Version <
27.6.1
Status
affected
VulnDex Vulnerability Enrichment
Weitere Schwachstelleninformationen
SystemWordPress Plugin
≫
Produkt
Yoast SEO Premium
Version
*-27.6.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.51% | 0.417 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| contact@wpscan.com | 6.6 | 0.7 | 5.9 |
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
|
CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
The product constructs all or part of a command, data structure, or record using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify how it is parsed or interpreted when it is sent to a downstream component.
https://wpscan.com/vulnerability/2ddd8362-7248-48de-aab9-74c70e7d5dd6/
https://yoast.com/yoast-seo-premium-may-26-2026/
https://www.wordfence.com/threat-intel/vulnerabilities/id/f99e62eb-5adb-40b8-87bd-ccec1e0fb80e