CVE-2026-65548
Received Received - Intake

Contributor RCE in Betheme <= 28.4.2

Vulnerability report for CVE-2026-65548, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-06

Last updated on: 2026-08-06

Assigner: Patchstack

Description

Contributor Remote Code Execution (RCE) in Betheme <= 28.4.2 versions.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-06
Last Modified
2026-08-06
Generated
2026-08-06
AI Q&A
2026-08-06
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 2 associated CPEs
Vendor Product Version / Range
betheme betheme to 28.4.2 (inc)
patchstack betheme to 28.4.2 (inc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-94 The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

CVE-2026-65548 is a high-severity Remote Code Execution (RCE) vulnerability affecting Betheme WordPress theme versions 28.4.2 and below. Attackers can exploit this flaw to execute arbitrary commands on the target website, potentially gaining full control and installing backdoors.

Detection Guidance

Check if your Betheme version is 28.4.2 or below by inspecting the theme files or WordPress admin panel. Look for unexpected code execution or unauthorized file modifications.

Impact Analysis

This vulnerability allows attackers to take full control of your website, execute malicious code, and install backdoors. It poses a significant risk of unauthorized access, data theft, or further compromise of your system.

Mitigation Strategies

Apply Patchstack's mitigation rule if available. Avoid using the vulnerable theme versions. Contact your hosting provider or developer for assistance. Monitor for suspicious activity or backdoors.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-65548. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart