VYPR

Crpaid Link Manager

by WordPress

CVEs (1)

  • CVE-2026-1780MedMar 18, 2026
    risk 0.40cvss 6.1epss 0.00

    The [CR]Paid Link Manager plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the URL path in all versions up to, and including, 0.5 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject…