CVE-2026-85130

CVE-2026-85130 published: The WPLP Cookie Consent WordPress plugin before 4.4.4 does not escape a value submitted through a public endpoint for the JavaScript context it is later output in on an administrative screen, allowing unauthenticated users to run arbitrary JavaScript in th...

View full NVD advisory → ← Back to CVE watch