A vulnerability, which was classified as problematic, has been found in Optimole Plugin up to 4.2.3 on WordPress. This impacts the function get_current_url. This manipulation causes cross site scripting. The identification of this vulnerability is CVE-2026-5226. It is possible to initiate the attack remotely.
| Vendor | Product | Versions |
|---|---|---|
| optimole | optimole – optimize images in real time | 0 |
Updated description with new details, changed severity to HIGH, and marked as actively exploited.
Initial creation