The HTTP Headers plugin for WordPress is vulnerable to CRLF Injection in all versions up to, and including, 1.19.2. This is due to…
Wordfence·CWE-93·Published 2026-04-22