VYPR

Media Manager

by TastyIgniter

CVEs (1)

  • CVE-2026-14856MedJul 27, 2026
    risk 0.00cvss epss 0.00

    A stored Cross-Site Scripting (XSS) vulnerability in the file upload functionality of the Media Manager in TastyIgniter v4.3.0, caused by insufficient validation and sanitization of SVG files. An authenticated user with low privileges can upload a malicious SVG file containing…