CVE-2026-8625 | dearhive DearFlip Plugin up to 2.4.30 on WordPress Custom HTML Block parseThumbs post_content HTML injection

SecurityVulns

A vulnerability classified as problematic has been found in dearhive DearFlip Plugin up to 2.4.30 on WordPress. Affected by this vulnerability is the function parseThumbs of the component Custom HTML Block. This manipulation of the argument post_content causes HTML injection.

This vulnerability appears as CVE-2026-8625. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More