Feed/CVE-2026-17010
CVE-2026-17010MEDIUMCVSS 5.4

CVE-2026-17010

Published Aug 10, 2026·Updated Aug 10, 2026

NVD Description

The Saitama Addon Pack WordPress plugin through 1.0.8 does not sanitise and escape certain post metadata values before outputting them, allowing users with contributor-level access and above to inject stored Cross-Site Scripting payloads that execute in the browser of a higher-privileged user who reviews the content.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free