CVE-2026-93654

CVE-2026-93654 published: The Premium Packages – Sell Digital Products Securely plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'cart_items[][product_name]' Parameter in all versions up to, and including, 7.2.1 due to insufficient input sanitization and output ...

View full NVD advisory → ← Back to CVE watch