Medium 5.3
2026-02-19< 1.3.6
CVE-2026-25408
Minimum safe version
1.3.6
Update to 1.3.6 or later to address 3 fixable vulnerabilities
CVE-2026-25408
Broken Link Notifier <= 1.3.0 - Authenticated (Contributor+) CSV Injection
WordPress Broken Link Notifier Plugin <= 1.3.0 is vulnerable to Server Side Request Forgery (SSRF)