Cross Site Scripting Vulnerability in Optimole WordPress Plugin
CVE-2026-57673
7.1HIGH
What is CVE-2026-57673?
The Optimole plugin for WordPress versions 4.2.7 and below has a critical Cross Site Scripting (XSS) vulnerability that can be exploited by unauthenticated attackers. This flaw allows malicious actors to inject scripts into the affected website, compromising security and potentially leading to data theft, session hijacking, or defacement. It is vital for users of this plugin to update to a secure version to mitigate risks associated with this vulnerability.
Affected Version(s)
Optimole <= 4.2.7