The Realtyna Organic IDX and WPL Real Estate plugins contain an arbitrary file upload vulnerability (CVE-2026-14483) allowing unauthenticated remote code execution via static, default API credentials.
PoC
Organic IDX plugin +2
wordpress
rce
file-upload
cve-2026-14483
1r
1c
1i
updated