← Zurück zur CVE-Suche

CVE-2026-5306

Check & Log Email

Beschreibung

The Check & Log Email WordPress plugin before 2.0.13 does not properly handle email replacement, which could allow unauthenticated users to perform Stored XSS attacks when the email encoder setting is enabled

CVSS 5.4EPSS 0.155%Risiko 0.55
Quelle öffnen
Veröffentlicht
2026-04-28 07:16:03
Betroffene Versionen
<2.0.13
Typ
Installed app
Vektor
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N