CVE · High

CVE-2026-54816 — Advanced Ads – Ad Manager & AdSense [advanced-ads] < 2.0.22

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2026-54816 Advanced Ads – Ad Manager & AdSense [advanced-ads] < 2.0.22 Improper Control of Generation of Code ('Code Injection') High 7.5 < 2.0.22 2.0.22 2026-06-17

CVE-2026-54816

Versions of the Advanced Ads - Ad Manager & AdSense plugin prior to 2.0.22 contain a critical security flaw that enables malicious users with contributor privileges or higher to inject arbitrary system commands on the hosting server. This vulnerability can be exploited remotely, posing a significant risk to affected websites.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.