A vulnerability identified as problematic has been detected in boldgrid W3 Total Cache Plugin up to 2.10.3 on WordPress. Affected by this issue is some unknown functionality of the component Lazy Load Images . The manipulation leads to cross site scripting. This vulnerability is documented as CVE-2026-18109 . The attack can be initiated remotely. There is not any exploit available.