CVE-2026-1257 | Administrative Shortcodes Plugin up to 0.3.4 on WordPress get_template_part file inclusion (EUVD-2026-4557)
A vulnerability, which was classified as critical, was found in Administrative Shortcodes Plugin up to 0.3.4 on WordPress. The affected element is the function get_template_part. Such manipulation leads to file inclusion.
This vulnerability is uniquely identified as CVE-2026-1257. The attack can be launched remotely. No exploit exists.