CVE-2026-1271 | ProfileGrid Plugin up to 5.9.7.2 on WordPress Image public/partials/crop.php update_user_meta resource injection
A vulnerability was found in ProfileGrid Plugin up to 5.9.7.2 on WordPress and classified as problematic. This impacts the function update_user_meta of the file public/partials/crop.php of the component Image Handler. Such manipulation leads to improper control of resource identifiers.
This vulnerability is traded as CVE-2026-1271. The attack may be launched remotely. There is no exploit available.