← Back to CVE search

CVE-2026-42756

QuickWebP

Description

Improper Limitation of a Pathname to a Restricted Directory (-Path Traversal-) vulnerability in Ludwig You QuickWebP – Compress / Optimize Images & Convert WebP | SEO Friendly quickwebp allows Path Traversal.This issue affects QuickWebP – Compress / Optimize Images & Convert WebP | SEO Friendly: from n/a through <= 3.2.7.

CVSS 9.9EPSS 0.336%Risk 1.02
View source
Published
2026-05-27 11:16:22
Affected versions
<= 3.2.7
Type
Package
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H