VYPR

Mimetypes Link Icons

by WordPress

CVEs (1)

  • CVE-2026-1313HigMar 21, 2026
    risk 0.54cvss 8.3epss 0.00

    The MimeTypes Link Icons plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 3.2.20. This is due to the plugin making outbound HTTP requests to user-controlled URLs without proper validation when the "Show file size" option is…