Beveiligingsadvies

CVE-2026-17010

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-08-10 06:00:13
Laatst bijgewerkt 2026-08-10 19:15:47
Toegewezen door WPScan
CVSS-score 5.4
Status PUBLISHED

Beschrijving

The Saitama Addon Pack WordPress plugin through 1.0.8 does not sanitise and escape certain post metadata values before outputting them, allowing users with contributor-level access and above to inject stored Cross-Site Scripting payloads that execute in the browser of a higher-privileged user who reviews the content.