WP Responsive Images plugin for WordPress <= 1.0 contains a path traversal caused by improper sanitization of the 'src' parameter, letting unauthenticated attackers read arbitrary files on the server.
id: CVE-2026-1557
info:
name: WP Responsive Images <= 1.0 - Arbitrary File Read
author: Shivam
...