← Retour à la recherche de CVE

CVE-2026-5306

Check & Log Email

Description

The Check & Log Email WordPress plugin before 2.0.13 does not properly handle email replacement, which could allow unauthenticated users to perform Stored XSS attacks when the email encoder setting is enabled

CVSS 5.4EPSS 0.155%Risque 0.55
Voir la source
Publication
2026-04-28 07:16:03
Versions concernées
<2.0.13
Type
Installed app
Vecteur
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N