Known Vulnerabilities for RTMKit by Unknown
Listed below are 5 of the newest known vulnerabilities associated with "RTMKit" by "Unknown".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-12907 json | The RTMKit WordPress plugin before 2.0.9 does not perform a proper capability check on one of its -builder AJAX actions, allo... | Not Provided | 2026-07-16 | 2026-07-16 |
| CVE-2026-12906 json | The RTMKit WordPress plugin before 2.0.9 does not perform a capability check in one of its AJAX actions and resolves a reques... | Not Provided | 2026-07-16 | 2026-07-16 |
| CVE-2026-8351 json | The RTMKit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Advanced Heading widget's 'Background Te... | Not Provided | 2026-07-03 | 2026-07-06 |
| CVE-2026-5149 json | The RTMKit plugin for WordPress is vulnerable to Incorrect Authorization in all versions up to, and including, 2.0.7 This is ... | Not Provided | 2026-06-16 | 2026-06-16 |
| CVE-2026-5137 json | The RTMKit (rometheme-for-elementor) plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and includ... | Not Provided | 2026-07-03 | 2026-07-06 |