VYPR

Post Export Import with Media

by WordPress

CVEs (1)

  • CVE-2026-13430HigJul 10, 2026
    risk 0.00cvss 7.2epss 0.01

    The Post Export Import with Media plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 1.13.1 via the import_media_file_secure function. This is due to insufficient file extension validation caused by a trailing-dot filename bypass,…