The Easy Media Replace WordPress plugin through 0.2.0 does not sanitise and escape an attachment title before outputting it in an HTML attribute in the media library list view, allowing users with the Author role and above to inject arbitrary web scripts that are executed in the browser of a higher privileged user who views the media library.
Metrics
Affected Vendors & Products
References
History
Wed, 19 Aug 2026 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Easy Media Replace WordPress plugin through 0.2.0 does not sanitise and escape an attachment title before outputting it in an HTML attribute in the media library list view, allowing users with the Author role and above to inject arbitrary web scripts that are executed in the browser of a higher privileged user who views the media library. | |
| Title | Easy Media Replace <= 0.2.0 - Author+ Stored XSS via Attachment Title | |
| References |
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2026-08-19T06:00:16.637Z
Reserved: 2026-07-09T12:51:50.875Z
Link: CVE-2026-15253
No data.
Status : Received
Published: 2026-08-19T06:17:34.360
Modified: 2026-08-19T06:17:34.360
Link: CVE-2026-15253
No data.
OpenCVE Enrichment
No data.