A vulnerability, which was classified as critical, has been found in WPvivid Plugin up to 0.9.130 on WordPress. This vulnerability affects unknown code. Performing a manipulation results in path traversal.

This vulnerability is cataloged as CVE-2026-19725. It is possible to initiate the attack remotely. There is no exploit available.

It is advisable to upgrade the affected component.