← WordPress Vulnerabilities
WordPress security by component

ThumbPress

ThumbPress is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Jul 20, 2026; the highest CVE/CNA score is 5.4.

Plugin slug: thumbpress

CVE-2026-13432: ThumbPress: A security weakness

ThumbPress is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is < 6.2.2.

PublishedJul 20, 2026
Known safe version6.2.2
Safe version
Jul 20, 2026 CVE-2026-13432
ThumbPress: A security weakness
ThumbPress is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is < 6.2.2.
6.2.2
CVE5.4
NVDPending