Known Vulnerabilities for Image Optimizer by Shortpixel
Listed below are 1 of the newest known vulnerabilities associated with "Image Optimizer" by "Shortpixel".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-4335 | The ShortPixel Image Optimizer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the attachment post_titl... | Not Provided | 2026-03-26 | 2026-03-26 |
| CVE-2025-57899 | Missing Authorization vulnerability in AresIT WP Compress wp-compress-image-optimizer allows Accessing Functionality Not Prop... | Not Provided | 2025-09-22 | 2026-04-01 |
| CVE-2025-47546 | Cross-Site Request Forgery (CSRF) vulnerability in AresIT WP Compress wp-compress-image-optimizer allows Cross Site Request F... | Not Provided | 2025-05-07 | 2026-04-01 |
| CVE-2025-47479 | Weak Authentication vulnerability in AresIT WP Compress wp-compress-image-optimizer allows Authentication Abuse.This issue af... | Not Provided | 2025-07-04 | 2026-04-01 |
| CVE-2025-25163 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Zach Swetz Plugin A/B Image O... | Not Provided | 2025-02-07 | 2026-04-01 |
| CVE-2024-48044 | Missing Authorization vulnerability in ShortPixel ShortPixel Image Optimizer shortpixel-image-optimiser allows Exploiting Inc... | Not Provided | 2024-11-01 | 2026-04-01 |
| CVE-2024-48043 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ShortPixel ShortPixel I... | Not Provided | 2024-10-17 | 2026-04-01 |
| CVE-2024-47384 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AresIT WP Compress wp-c... | Not Provided | 2024-10-05 | 2026-04-01 |
| CVE-2024-31924 | Cross-Site Request Forgery (CSRF) vulnerability in nosilver4u EWWW Image Optimizer ewww-image-optimizer.This issue affects EW... | Not Provided | 2024-04-10 | 2026-04-01 |