Medium 4.9
2026-05-05< 2.8.3
CVE-2026-1921
Minimum safe version
2.8.3
Update to 2.8.3 or later to address 6 fixable vulnerabilities
CVE-2026-1921
Loco Translate <= 2.8.2 - Reflected Cross-Site Scripting via 'update_href' Parameter
CVE-2024-37236
Loco Translate < 2.2.2 - Authenticated LFI
CVE-2022-0765
CVE-2021-24721