Cross Site Scripting Vulnerability in WP Google Review Slider Plugin
CVE-2026-39451
6.3MEDIUM
What is CVE-2026-39451?
The WP Google Review Slider plugin versions up to 18.0 are prone to an unauthenticated cross site scripting (XSS) vulnerability. This flaw allows attackers to inject malicious scripts into the web application, posing a risk to the confidentiality and integrity of user data. Proper measures should be taken to update or patch the affected versions to mitigate potential security breaches.
Affected Version(s)
WP Google Review Slider <= 18.0