| ID | CVE-2026-5776 | ||||||
| Sažetak | The Email Encoder WordPress plugin before 2.4.7 does not escape email addresses retrieved via user input, allowing unauthenticated attackers to perform Stored XSS attacks | ||||||
| Reference | |||||||
| CVSS |
|
||||||
| Pristup |
|
||||||
| Impact |
|
||||||
| CVSS vektor | CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N | ||||||
| Zadnje važnije ažuriranje | 20-05-2026 - 14:01 | ||||||
| Objavljeno | 20-05-2026 - 07:16 |

