logo

VibeBP Vulnerabilities: RCE & Privilege Escalation Risks

ID: e884d3dd-8972-5aa3-9d10-cd32c50196e2

STIX ID: report--e884d3dd-8972-5aa3-9d10-cd32c50196e2

Feed Name: Cyble Blog

Threat Score
75/100

Date Published: 2025-03-03

Date Updated: 2026-07-20

...
...

**CERT-In advisory on VibeBP plugin vulnerabilities:** The report describes multiple critical vulnerabilities in the VibeBP WordPress plugin that can allow unauthenticated or low-privilege users to escalate privileges to administrator level, perform SQL injection, and execute arbitrary code (potential RCE), and urges updating to VibeBP version 1.9.9.7.7 or later to mitigate these risks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.