Cross-Site Scripting Vulnerability in reCAPTCHA for Asgaros Forum
CVE-2026-57365
6.5MEDIUM
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 13 July 2026
What is CVE-2026-57365?
A Cross-Site Scripting (XSS) vulnerability exists in the reCAPTCHA plugin for Asgaros Forum, specifically in versions up to 1.1.0. This security flaw allows attackers to exploit improper neutralization of input during web page generation, leading to potential DOM-based XSS attacks. Websites utilizing the reCAPTCHA integration may be at risk if they do not implement appropriate security measures.
Affected Version(s)
reCAPTCHA (v2 & v3) for Asgaros Forum 0 <= 1.1.0