CVE-2026-4895 - Greenshift <= 12.8.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via disablelazy Attribute
CVE ID :CVE-2026-4895
Published : April 11, 2026, 2:16 a.m. | 13 hours, 57 minutes ago
Description :The GreenShift - Animation and Page Builder Blocks plugin for WordPress is vulnerable to S...
Related Vulnerabilities
- CVE-2026-32930: Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, an Insecure Direct Obj HIGH
- CVE-2026-5217: The Optimole – Optimize Images | Convert WebP & AVIF | CDN & Lazy Load | Image Optimization plugin f HIGH
- CVE-2026-40212: OpenStack Skyline before 5.0.1, 6.0.0, and 7.0.0 has a DOM-based Cross-Site Scripting (XSS) vulnerab MEDIUM
- CVE-2026-4895: The GreenShift - Animation and Page Builder Blocks plugin for WordPress is vulnerable to Stored Cros MEDIUM
- CVE-2026-6068: NASM contains a heap use after free vulnerability in response file (-@) processing where a dangling MEDIUM
Related Coverage
Threat Actors