PT-2026-40893 · Erolsk8 · Media Sync

Drew Webber

·

Published

2026-05-14

·

Updated

2026-05-14

·

CVE-2026-6670

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
The Media Sync plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.4.9 via the 'sub dir' and 'media items' parameters. This is due to insufficient validation of user-supplied file paths, which are not checked for directory traversal sequences or restricted to the intended uploads directory. This makes it possible for authenticated attackers, with Author-level access and above, to perform actions on files outside of the originally intended directory.

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2026-6670

Affected Products

Media Sync