
CVE-2026-1373 The Easy Author Image plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'author_profile_picture_url' parameter in all versions up to, and includ… https://www.cve.org/CVERecord?id=CVE-2026-1373
Post summary
The Easy Author Image plugin for WordPress is vulnerable to stored cross‑site scripting via the 'author_profile_picture_url' parameter in all affected versions.
