The Easy Media Replace WordPress plugin through 0.2.0 does not sanitise and escape an attachment title before outputting it in an HTML attribute in the media library list view, allowing users with the Author role and above to inject arbitrary web scripts that are executed in the browser of a higher privileged user who views the media library.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 19 Aug 2026 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Easy Media Replace WordPress plugin through 0.2.0 does not sanitise and escape an attachment title before outputting it in an HTML attribute in the media library list view, allowing users with the Author role and above to inject arbitrary web scripts that are executed in the browser of a higher privileged user who views the media library. | |
| Title | Easy Media Replace <= 0.2.0 - Author+ Stored XSS via Attachment Title | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2026-08-19T06:00:16.637Z
Reserved: 2026-07-09T12:51:50.875Z
Link: CVE-2026-15253
No data.
Status : Received
Published: 2026-08-19T06:17:34.360
Modified: 2026-08-19T06:17:34.360
Link: CVE-2026-15253
No data.
OpenCVE Enrichment
No data.
Weaknesses
No weakness.