CVE-2026-12757 | icegram Email Subscribers & Newsletters Plugin up to 5.9.27 on WordPress Shortcode do_shortcode code injection

SecurityVulns

A vulnerability was found in icegram Email Subscribers & Newsletters Plugin up to 5.9.27 on WordPress. It has been declared as critical. This affects the function do_shortcode of the component Shortcode Handler. The manipulation results in code injection.

This vulnerability is cataloged as CVE-2026-12757. The attack may be launched remotely. There is no exploit available.VulDB Recent EntriesRead More