CRITICAL 9.9 CVE-2026-66627 Published 18 Aug 2026

GP Premium WordPress Plugin Arbitrary File Upload Vulnerability

Worried this affects one of your servers?

GP Premium by EDGE22 Studios Ltd. contains an Unrestricted Upload of File with Dangerous Type vulnerability that allows remote code inclusion.

The issue affects GP Premium from n/a through 2.5.5.

Reference: CVE-2026-66627 on NVD

← Back to Security News