WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in Broadcast Live Video – Live Streaming : WebRTC, HLS, RTSP, RTMP

Run a WordPress live streaming platform with WebRTC, HLS, RTMP, OBS/IP camera inputs, channels, chat, scheduling, memberships, and PPV.

15Reported vulnerabilities
10Highest CVSS score
7.3.1Latest version
400+Active installs

What to do now

Update Broadcast Live Video – Live Streaming : WebRTC, HLS, RTSP, RTMP to 7.2.5 or later. 15 of these have a fixed version available. Updating resolves them.

Plugin last updated: July 6, 2026 / Tested up to WordPress: 7.0.4 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2014-1905 High 10 9.8% 4.27.4 and earlier 4.29.5 December 29, 2014
CVE-2014-1907 Critical 9.8 10.9% Before 4.29.5 4.29.5 February 27, 2014
CVE-2014-1908 Medium 5 6.8% 4.27.4 and earlier 4.29.5 December 29, 2014
CVE-2023-25699 Critical 9.1 1.3% 5.5.15 and earlier 5.5.16 February 20, 2023
CVE-2025-26752 Critical 9.1 0.5% 6.1.10 and earlier 6.2.1 February 14, 2025
CVE-2026-57716 Critical 9.1 0.4% 7.2.4 and earlier 7.2.5 July 21, 2026
CVE-2014-4569 Medium 4.3 2.0% 4.27 and earlier
1.0.2 to 1.0.2 (inclusive)
2.0 to 2.0 (inclusive)
2.1 to 2.1 (inclusive)
2.2 to 2.2 (inclusive)
4.05 to 4.05 (inclusive)
4.07 to 4.07 (inclusive)
4.25 to 4.25 (inclusive)
4.27.2 to 4.27.2 (inclusive)
4.27.4 July 1, 2014
CVE-2014-1906 High 7.1 4.5% Before 4.29.5 4.29.5 February 6, 2014
CVE-2026-27053 High 8.1 0.4% Before 7.1.3 7.1.3 May 28, 2026
CVE-2025-26753 High 7.5 0.6% 6.1.10 and earlier 6.2.1 February 14, 2025
CVE-2026-24937 High 7.2 0.4% Before 7.1.3 7.1.3 May 25, 2026
CVE-2013-5714 Medium 6.1 2.0% 4.25.3 and earlier 4.27 August 23, 2013
CVE-2014-2297 Medium 6.1 1.1% 4.29.6 to 4.29.6 (inclusive) 4.29.9 March 19, 2018
CVE-2024-12504 Medium 5.4 0.2% Before 6.1.10 6.1.10 January 23, 2025
CVE-2025-48255 Medium 4.3 0.2% 6.2.4 and earlier 6.2.5 May 19, 2025

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.