Cross-site Scripting Vulnerability in List Category Posts by Fernando Briano
CVE-2026-32419
5.9MEDIUM
What is CVE-2026-32419?
A Cross-site Scripting (XSS) vulnerability exists in the List Category Posts plugin by Fernando Briano, allowing attackers to inject malicious scripts into web pages. This issue primarily affects versions up to and including 0.93.1, enabling potential exploitation through improperly sanitized user input during the page generation process.
Affected Version(s)
List category posts 0 <= 0.93.1