CVE-2026-42756
CRITICAL
NVD
CVSS Score
9.9
Severity
CRITICAL
Published
May 27, 2026
Vendor
unknown
Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Ludwig You QuickWebP – Compress / Optimize Images & Convert WebP | SEO Friendly quickwebp allows Path Traversal.This issue affects QuickWebP – Compress / Optimize Images & Convert WebP | SEO Friendly: from n/a through <= 3.2.7.