CVE-2026-6641 | dglingren Media Library Assistant Plugin up to 3.35 on WordPress Shortcode _paginate_links mla_link_href cross site scripting
A vulnerability was found in dglingren Media Library Assistant Plugin up to 3.35 on WordPress. It has been classified as problematic. Affected is the function _paginate_links of the component Shortcode Handler. This manipulation of the argument mla_link_href causes cross site scripting.
The identification of this vulnerability is CVE-2026-6641. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More