The YML for Yandex Market WordPress plugin before 5.0.26 is vulnerable to Remote Code Execution via the feed generation process.
We have discovered 801 live websites that are affected by CVE-2025-14545.
| Product | |
| Category | Wordpress Plugins |
| Vulnerable Domains | 801 live websites (79% of Yml For Yandex Market install base) |
| Vulnerable Versions |
|
| Vulnerable Versions Count | 23 versions ( 96% of all versions) |
| 1 websites | |
| 751 websites | |
| 26 websites | |
| 10 websites | |
| 7 websites | |
| 2 websites | |
| 1 websites | |
| 1 websites | |
| 1 websites | |
| 1 websites |
| .ru | 629 websites |
| .com | 40 websites |
| .net | 2 websites |
| .org | 2 websites |
| .at | 1 websites |
| .co | 1 websites |
| .info | 1 websites |
| Domain | Country | Rank | Contacts |
|---|---|---|---|
| **********.ru | *,***,*** | ||
| ********.ru | *,***,*** | ||
| ******.ru | *,***,*** | ||
| *******.mobi | *,***,*** | ||
| *******.ru | *,***,*** | ||
| ********.ru | *,***,*** | ||
| ****.ru | *,***,*** | ||
| *********.ru | *,***,*** | ||
| ***********.ru | *,***,*** | ||
| ***********.ru | *,***,*** |
FAQ