CVE-2026-57811: WordPress Realtyna Organic IDX plugin plugin <= 5.2.0 - Remote Code Execution (RCE) vulnerability
Published Jul 13, 2026
·Updated
Improper Control of Generation of Code ('Code Injection') vulnerability in Realtyna Realtyna Organic IDX plugin real-estate-listing-realtyna-wpl allows Remote Code Inclusion.This issue affects Realtyna Organic IDX plugin: from n/a through <= 5.2.0.
Affected Software
1 affected component
real-estate-listing-realtyna-wpl<=5.2.0
Event History
Jul 13, 2026
CVE Published
via MITRE·08:41 AM
Data Sourced
via MITRE·08:41 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-57811?
CVE-2026-57811 has a critical severity rating of 10.
2
How do I fix CVE-2026-57811?
To fix CVE-2026-57811, update the Realtyna Organic IDX plugin to version 5.2.1 or later.
3
What type of vulnerability is CVE-2026-57811?
CVE-2026-57811 is a remote code execution (RCE) vulnerability due to improper control of code generation.
4
Which versions of the Realtyna Organic IDX plugin are affected by CVE-2026-57811?
CVE-2026-57811 affects all versions of the Realtyna Organic IDX plugin up to and including 5.2.0.
5
Can CVE-2026-57811 lead to data breaches?
Yes, CVE-2026-57811 can lead to serious data breaches as it allows remote code execution on the affected site.