Cross Site Scripting Vulnerability in WP Docs by WordPress
CVE-2026-81782
6.5MEDIUM
What is CVE-2026-81782?
A Cross Site Scripting (XSS) vulnerability has been identified in the WP Docs plugin, affecting versions up to 2.3.1. This vulnerability allows an attacker to inject malicious scripts into web pages viewed by subscribers, thereby compromising the security of the applications and potentially leading to unauthorized access and data exposure.
Affected Version(s)
WP Docs <= 2.3.1