6.6

CVE-2026-10821

Exploit

Yoast SEO Premium < 27.6.1 - Author+ Arbitrary .htaccess Directive Injection to RCE

Yoast SEO Premium <= 27.6.0 - Authenticated (Author+) Remote Code Execution

The Yoast SEO Premium WordPress plugin before 27.6.1 does not sanitize control characters from redirect origins before writing them to the site's Apache configuration file when the file-based redirect mode is enabled, and the redirect-creation endpoint is reachable by users with only Author-level access. This allows such users to inject arbitrary newline-delimited Apache directives into the root .htaccess file. On Apache servers that honour PHP directives, the injection can be chained with the user's own media upload (a polyglot image carrying a PHP payload) and an auto_prepend_file directive to achieve Remote Code Execution.
Mögliche Gegenmaßnahme
Yoast SEO Premium: Update to version 27.6.1, or a newer patched version
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerUnknown
≫
Produkt Yoast SEO Premium
Default Statusunaffected
Version 0
Version < 27.6.1
Status affected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Weitere Schwachstelleninformationen
SystemWordPress Plugin
≫
Produkt Yoast SEO Premium
Version *-27.6.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.51% 0.417
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
contact@wpscan.com 6.6 0.7 5.9
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

The product constructs all or part of a command, data structure, or record using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify how it is parsed or interpreted when it is sent to a downstream component.

https://wpscan.com/vulnerability/2ddd8362-7248-48de-aab9-74c70e7d5dd6/
https://yoast.com/yoast-seo-premium-may-26-2026/
https://www.wordfence.com/threat-intel/vulnerabilities/id/f99e62eb-5adb-40b8-87bd-ccec1e0fb80e
Third Party Advisory