
CVE-2026-3339 The Keep Backup Daily plugin for WordPress is vulnerable to Limited Path Traversal in all versions up to, and including, 2.1.1 via the `kbd_open_upload_dir` AJAX action… https://www.cve.org/CVERecord?id=CVE-2026-3339
Post summary
CVE-2026-3339 describes a limited path traversal flaw in the Keep Backup Daily WordPress plugin (versions up to 2.1.1) triggered via the kbd_open_upload_dir AJAX action.
