CVE · Medium

CVE-2026-25325 — rtMedia for WordPress, BuddyPress and bbPress [buddypress-media] < 4.7.9

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2026-25325 rtMedia for WordPress, BuddyPress and bbPress [buddypress-media] < 4.7.9 Exposure of Sensitive System Information to an Unauthorized Control Sphere Medium 5.3 < 4.7.9 4.7.9 2026-02-01

CVE-2026-25325

A security flaw exists in the rtCamp rtMedia plugin for WordPress, which also supports BuddyPress and bbPress integrations. This vulnerability enables unauthorized access to sensitive system information that was previously inaccessible. The affected versions of the plugin range from an unspecified starting point up to 4.7.8.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.