VYPR

Post Export Import with Media

by WordPress

CVEs (1)

  • CVE-2026-13430Jul 10, 2026
    risk 0.00cvss epss 0.01

    The Post Export Import with Media plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 1.13.1 via the import_media_file_secure function. This is due to insufficient file extension validation caused by a trailing-dot filename bypass,…