A vulnerability classified as critical was found in WP-FeedStats trx_addons Plugin up to 2.38.4 on WordPress. Affected by this vulnerability is an unknown functionality. Executing a manipulation can lead to unrestricted upload.
This vulnerability is registered as CVE-2026-1969. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is advised.