CVE-2026-57413: WordPress Instant Image Generator plugin <= 2.1.4 - Server Side Request Forgery (SSRF) vulnerability
Published Jul 13, 2026
·Updated
Server-Side Request Forgery (SSRF) vulnerability in bdthemes Instant Image Generator ai-image allows Server Side Request Forgery.This issue affects Instant Image Generator: from n/a through <= 2.1.4.
Affected Software
1 affected component
BdThemes Instant Image Generator<=2.1.4
Event History
Jul 13, 2026
CVE Published
via MITRE·08:41 AM
Data Sourced
via MITRE·08:41 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-57413?
CVE-2026-57413 has a medium severity rating of 6.4.
2
What type of vulnerability is CVE-2026-57413?
CVE-2026-57413 is a Server Side Request Forgery (SSRF) vulnerability.
3
How can I fix CVE-2026-57413?
To fix CVE-2026-57413, upgrade the BdThemes Instant Image Generator plugin to version 2.1.5 or later.
4
Which versions of the plugin are affected by CVE-2026-57413?
CVE-2026-57413 affects BdThemes Instant Image Generator plugin versions from n/a through 2.1.4.
5
What potential impact does CVE-2026-57413 have?
CVE-2026-57413 could allow an attacker to perform Server Side Request Forgery attacks.