← Voltar à pesquisa de CVEs

CVE-2026-5306

Check & Log Email

Descrição

The Check & Log Email WordPress plugin before 2.0.13 does not properly handle email replacement, which could allow unauthenticated users to perform Stored XSS attacks when the email encoder setting is enabled

CVSS 5.4EPSS 0.155%Risco 0.55
Ver fonte
Publicação
2026-04-28 07:16:03
Versões afetadas
<2.0.13
Tipo
Installed app
Vetor
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N