Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update the WordPress Migratico Lite Plugin to the latest available version (at least 2.7.1).
Tracking
Sign in to view the affected projects.
No advisories yet.
Sat, 19 Sep 2026 03:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 18 Sep 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Superweby
Superweby migratico Lite Wordpress Wordpress wordpress |
|
| Vendors & Products |
Superweby
Superweby migratico Lite Wordpress Wordpress wordpress |
Thu, 17 Sep 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unauthenticated Remote Code Execution (RCE) in Migratico Lite <= 2.6.8 versions. | |
| Title | WordPress Migratico Lite plugin <= 2.6.8 - Remote Code Execution (RCE) vulnerability | |
| Weaknesses | CWE-94 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-09-19T02:18:44.706Z
Reserved: 2026-07-13T06:15:10.221Z
Link: CVE-2026-62104
Updated: 2026-09-19T02:18:39.520Z
Status : Deferred
Published: 2026-09-17T14:17:15.130
Modified: 2026-09-19T03:17:14.667
Link: CVE-2026-62104
No data.
OpenCVE Enrichment
Updated: 2026-09-18T20:02:23Z
-
CWE-94
Improper Control of Generation of Code ('Code Injection')