CVE-2026-82193 - WPvivid Backup & Migration < 0.9.134 - Admin+ File Write Outside the Backup Directory via Path Traversal
CVE ID :CVE-2026-82193
Published : Sept. 4, 2026, 6 a.m. | 1 hour, 4 minutes ago
Description :The WPvivid — Backup, Migration & Staging WordPress plugin before 0.9.134 does not validate a user supplied file name before using it to build a write path, allowing administrators to write files of permitted types to arbitrary locations on the server and to overwrite existing files.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Sept. 4, 2026, 6 a.m. | 1 hour, 4 minutes ago
Description :The WPvivid — Backup, Migration & Staging WordPress plugin before 0.9.134 does not validate a user supplied file name before using it to build a write path, allowing administrators to write files of permitted types to arbitrary locations on the server and to overwrite existing files.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...