← WordPress Vulnerabilities
WordPress security by component

Media Library Folders

Media Library Folders is a WordPress component with 2 published CVE records in this archive. The latest tracked vulnerability was published Feb 14, 2026; the highest CVE/CNA score is 6.1.

Plugin slug: media-library-folders

CVE-2026-2312: Media Library Folders: A security weakness

Media Library Folders is affected by a security weakness. Exploitation requires at least author-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.

PublishedFeb 14, 2026
Safe version guidanceSee mitigation notes
Safe version
Feb 14, 2026 CVE-2026-2312
Media Library Folders: A security weakness
Media Library Folders is affected by a security weakness. Exploitation requires at least author-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.3
NVDPending
Apr 19, 2024 CVE-2024-3615
Media Library Folders: Cross-site scripting
Media Library Folders is affected by cross-site scripting. The vulnerable path is reachable without authentication. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
See mitigation notes
CVE6.1
NVDPending