VYPR
Unrated severityNVD Advisory· Published Jul 1, 2026· Updated Jul 2, 2026

WordPress Enable Media Replace plugin <= 4.2.1 - Cross Site Scripting (XSS) vulnerability

CVE-2026-57722

Description

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ShortPixel Enable Media Replace allows Stored XSS.

This issue affects Enable Media Replace: from n/a through 4.2.1.

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.