CVE-2026-54816: WordPress Advanced Ads plugin <= 2.0.21 - Remote Code Execution (RCE) vulnerability
Improper Control of Generation of Code ('Code Injection') vulnerability in Monetizemore Advanced Ads allows Remote Code Inclusion.
This issue affects Advanced Ads: from n/a through 2.0.21.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress Advanced Ads Pluginto a version that resolves this vulnerability.Fixed in 2.0.22
Event History
Frequently Asked Questions
What is the severity of CVE-2026-54816?
The severity of CVE-2026-54816 is high with a CVSS score of 7.5.
How do I fix CVE-2026-54816?
To fix CVE-2026-54816, update the Monetizemore Advanced Ads plugin to version 2.0.22 or later.
What type of vulnerability is CVE-2026-54816?
CVE-2026-54816 is classified as a Remote Code Execution (RCE) vulnerability due to improper control of code generation.
Which versions of the plugin are affected by CVE-2026-54816?
CVE-2026-54816 affects all versions of Monetizemore Advanced Ads up to and including version 2.0.21.
What impact does CVE-2026-54816 have on my website?
CVE-2026-54816 can allow an attacker to execute remote code, potentially compromising the entire website.