Known Vulnerabilities for Image Optimizer by Shortpixel
Listed below are 1 of the newest known vulnerabilities associated with "Image Optimizer" by "Shortpixel".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-91011 json | The EWWW Image Optimizer WordPress plugin before 8.7.7 does not properly escape image attribute values when it rewrites page ... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-84773 json | Unauthenticated Cross Site Scripting (XSS) in EWWW Image Optimizer <= 8.7.6 versions. | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-17086 json | The ShortPixel Image Optimizer – Optimize Images, Convert WebP & AVIF plugin for WordPress is vulnerable to PHP Object Inje... | Not Provided | 2026-09-18 | 2026-09-18 |
| CVE-2026-15446 json | The EWWW Image Optimizer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'data-script' Lazy Load Attrib... | Not Provided | 2026-08-19 | 2026-08-20 |
| CVE-2026-15421 json | The Speed Optimizer – The All-In-One Performance-Boosting Plugin plugin for WordPress is vulnerable to Stored Cross-Site Sc... | Not Provided | 2026-08-19 | 2026-08-20 |
| CVE-2026-15345 json | The ShortPixel Adaptive Images – WebP, AVIF, CDN, Image Optimization plugin for WordPress is vulnerable to authorization by... | Not Provided | 2026-08-16 | 2026-08-17 |
| CVE-2026-5821 json | The Image Optimizer plugin for WordPress is vulnerable to arbitrary file deletion in versions up to and including 1.7.4. This... | Not Provided | 2026-07-02 | 2026-07-02 |
| CVE-2024-48044 json | Not Provided | 2024-11-01 | 2026-04-23 |