A vulnerability marked as problematic has been reported in bitpressadmin Bit integrations Plugin up to 2.9.0 on WordPress. Affected by this vulnerability is the function
processAttachment. This manipulation causes path traversal.
This vulnerability is registered as CVE-2026-15006. Remote exploitation of the attack is possible. No exploit is available.