CVE-2026-97348 | gpriday SiteOrigin Widgets Bundle Plugin up to 1.74.3 on WordPress Shortcode get_instance_css path traversal
A vulnerability has been found in gpriday SiteOrigin Widgets Bundle Plugin up to 1.74.3 on WordPress and classified as problematic. Affected by this issue is the function get_instance_css of the component Shortcode Handler. The manipulation leads to path traversal.
This vulnerability is listed as CVE-2026-97348. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More