{
  "title": "CVE of the day — CVE-2026-85097 (CVSS 9,8, criticism)",
  "title_variants": [
    {
      "id": "v0",
      "title": "CVE of the day — CVE-2026-85097 (CVSS 9,8, criticism)"
    },
    {
      "id": "v1",
      "title": "CVE-2026-85097: critical vulnerability, CVSS 9,8/10, type upload of dangerous"
    }
  ],
  "description": "CVE-2026-85097: critical vulnerability, CVSS 9,8/10, type upload of dangerous files, exploitable remotely, without privileges, without user interaction. The Bricksforge plugin for WordPress is vulnerable to unuthenticated arbitrary file upload in versions up to, and including, 3.1.8.9. This is two to..",
  "keywords": [
    "c",
    "cve-2026-85097",
    "vulnerability",
    "critical vulnerability",
    "♪",
    "cvs",
    "cybersecurity",
    "cybersecurity",
    "♪",
    "security update"
  ],
  "scenes": [
    {
      "title": "CVE-2026- 850",
      "subtitle": "CVSS 9,8",
      "text": "CVE-2026-85097: Critical gravity, CVSS score 9,8 out of 10 according to the National Vulnerability Database."
    },
    {
      "title": "Upload of dangerous files",
      "subtitle": "upload of dangerous files · CVSS v3.1",
      "text": "The Bricksforge plugin for WordPress is vulnerable to unuthenticated arbitrary file upload in versions up to, and including, 3.1.8.9. This is two to insufficient validation of the attacker-controlled URL field in the.."
    },
    {
      "title": "EXPOSURE AND MITIGATION",
      "subtitle": "remotely exploitable, without privileges, without user interaction",
      "text": "Remotely exploitable Vulnerability, without privileges, without user interaction. Apply the update of the supplier promptly and consult the official notice on NVD."
    }
  ],
  "publication_date": "2026-10-10T00:40:16.663Z",
  "duration": 20,
  "topic": "cve",
  "lang": "en",
  "translation_group": "cve-2026-10-10",
  "poster": "cve-2026-10-10-en.jpg",
  "preview": "cve-2026-10-10-en.gif",
  "og_card": "cve-2026-10-10-en.og.jpg",
  "audiogram": "cve-2026-10-10-en.audiogram.mp4",
  "captions": "cve-2026-10-10-en.vtt",
  "generation": {
    "procedural": true,
    "ai_generated": [
      "background",
      "voice"
    ],
    "real_data_source": "official public API",
    "filmed_real_event": false,
    "disclosure": "Procedurally generated from real public-source data; abstract AI-generated backgrounds; synthetic (TTS) voice. No real event is filmed or altered."
  },
  "transcript_text": "CVE-2026-85097: Critical gravity, CVSS score 9,8 out of 10 according to the National Vulnerability Database. The Bricksforge plugin for WordPress is vulnerable to unuthenticated arbitrary file upload in versions up to, and including, 3.1.8.9. This is two to insufficient validation of the attacker-controlled URL field in the.. Remotely exploitable Vulnerability, without privileges, without user interaction. Apply the update of the supplier promptly and consult the official notice on NVD.",
  "transcript": [
    {
      "start": 0,
      "end": 6.667,
      "text": "CVE-2026-85097: Critical gravity, CVSS score 9,8 out of 10 according to the National Vulnerability Database."
    },
    {
      "start": 6.667,
      "end": 13.333,
      "text": "The Bricksforge plugin for WordPress is vulnerable to unuthenticated arbitrary file upload in versions up to, and including, 3.1.8.9. This is two to insufficient validation of the attacker-controlled URL field in the.."
    },
    {
      "start": 13.333,
      "end": 20,
      "text": "Remotely exploitable Vulnerability, without privileges, without user interaction. Apply the update of the supplier promptly and consult the official notice on NVD."
    }
  ]
}