A vulnerability was found in cubewp1211 CubeWP Framework Plugin up to 1.1.30 on WordPress. It has been classified as problematic. Impacted is the function
cubewp_get_svg_content. The manipulation leads to path traversal.
This vulnerability is listed as CVE-2026-13339. The attack may be initiated remotely. There is no available exploit.