A vulnerability categorized as problematic has been discovered in photoweblog OSM Plugin up to 6.1.15 on WordPress. Impacted is the function
file_color_list of the component Shortcode Handler. Such manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2026-4429. The attack may be launched remotely. There is no exploit available.
It is advisable to upgrade the affected component.