This issue affects GP Premium: from n/a through 2.5.5.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update the WordPress GP Premium Plugin to the latest available version (at least 2.5.6).
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 08 Sep 2026 00:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Contributor Arbitrary File Upload in GP Premium <= 2.5.5 versions. | Unrestricted Upload of File with Dangerous Type vulnerability in EDGE22 Studios Ltd. GP Premium allows Remote Code Inclusion. This issue affects GP Premium: from n/a through 2.5.5. |
Fri, 21 Aug 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Edge22 Studios Ltd.
Edge22 Studios Ltd. gp Premium Wordpress Wordpress wordpress |
|
| Vendors & Products |
Edge22 Studios Ltd.
Edge22 Studios Ltd. gp Premium Wordpress Wordpress wordpress |
Tue, 18 Aug 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 18 Aug 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Contributor Arbitrary File Upload in GP Premium <= 2.5.5 versions. | |
| Title | WordPress GP Premium plugin <= 2.5.5 - Arbitrary File Upload vulnerability | |
| Weaknesses | CWE-434 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-09-07T23:48:11.365Z
Reserved: 2026-07-27T14:00:26.966Z
Link: CVE-2026-66627
Updated: 2026-08-18T15:09:15.636Z
Status : Deferred
Published: 2026-08-18T15:16:57.563
Modified: 2026-09-08T00:16:52.683
Link: CVE-2026-66627
No data.
OpenCVE Enrichment
Updated: 2026-09-08T02:15:08Z