CRITICAL
9.8 CVE-2026-81402 Published 12 Sept 2026
WordPress DS Ad Rotator PHP Upload Bug
Worried this affects one of your servers?
The DS Ad Rotator WordPress plugin, up to version 0.8, has a critical security flaw.
WordPress plugin DS Ad Rotator does not validate uploaded files, allowing unauthenticated users to upload malicious PHP files.
This can lead to remote code execution, compromising the entire website.
Reference: CVE-2026-81402 on NVD
← Back to Security News