
CVE-2026-16250 The Personal QR Message WordPress plugin through 1.0 does not restrict the file types that can be uploaded through an unauthenticated handler, allowing unauthenticate… https://www.cve.org/CVERecord?id=CVE-2026-16250
Post summary
The post points out a file‑upload vulnerability in the Personal QR Message WordPress plugin and links to the CVE record, but provides no PoC, exploitation code, or patch information.

