Skip to main content
Loading…
    CVE-2026-1921 — The Loco Translate plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 2.8.2 via the `fsReference` AJAX route. This is due to the `findSourceFile()` method norma — CVE Database · The Intelligence Room