CVE-2026-93889

CVE-2026-93889 published: The Mail logging – WP Mail Catcher plugin for WordPress is vulnerable to Stored Cross-Site Scripting via PHPMailer 'wp_mail_failed' Error Message in all versions up to, and including, 2.1.12 due to insufficient input sanitization and output escaping. This m...

View full NVD advisory → ← Back to CVE watch