CVE-2026-5340 | gopi_plus Fancy Image Show Plugin up to 9.1 on WordPress Shortcode cross site scripting
A vulnerability was found in gopi_plus Fancy Image Show Plugin up to 9.1 on WordPress. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2026-5340. The attack is possible to be carried out remotely. No exploit exists.