Critical severity9.8NVD Advisory· Published Apr 20, 2020· Updated Jun 17, 2026
CVE-2020-11928
CVE-2020-11928
Description
In the media-library-assistant plugin before 2.82 for WordPress, Remote Code Execution can occur via the tax_query, meta_query, or date_query parameter in mla_gallery via an admin.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:davidlingren:media_library_assistant:*:*:*:*:*:wordpress:*:*Range: <2.82
- WordPress/media-library-assistant plugindescription
- Range: <2.82
Patches
Vulnerability mechanics
References
1- wordpress.org/plugins/media-library-assistant/nvdProductThird Party Advisory
News mentions
0No linked articles in our index yet.