Feed/CVE-2026-3998
CVE-2026-3998MEDIUMCVSS 6.4

CVE-2026-3998

Published Apr 15, 2026·Updated Jun 17, 2026

NVD Description

The WM JqMath plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'style' shortcode attribute of the [jqmath] shortcode in all versions up to and including 1.3. This is due to insufficient input sanitization and output escaping on user-supplied shortcode attributes. The generate_jqMathFormula() function directly concatenates the 'style' attribute value into an HTML style attribute without applying esc_attr() or any other escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

Public Exploits & PoCs10 found

[POC] GHSA-8gj2-2cvc-6xx7 — CVE-2026-39987_PoC

A proof-of-concept for CVE-2026-39987

[POC] GHSA-8gj2-2cvc-6xx7 — CVE-2026-39987

CVE-2026-39987 poc

[POC] GHSA-8gj2-2cvc-6xx7 — CVE-2026-39987

Simple POC for CVE-2026-39987

[POC] GHSA-8gj2-2cvc-6xx7 — CVE-2026-39987

Marimo exploit prior to 0.23.0. Pre-Auth RCE vulnerability via websocket endpoint : /terminal/ws.

[POC] CVE-2026-39987 — CVE-2026-39987

CVE-2026-39987 - Draft

[POC] CVE-2026-39987 — CVE-2026-39987-POC

CVE-2026-39987 Exploitation Tool - Marimo < 0.23.0 Pre-Auth RCE (WebSocket)

[POC] CVE-2026-39987 — CVE-2026-39987-marimo-rce

CVE-2026-39987

[POC] CVE-2026-39987 — CVE-2026-39987

Marimo Pre-Auth RCE

[POC] CVE-2026-39987 — CVE-2026-39987

marimo is a reactive Python notebook. Prior to 0.23.0, Marimo has a Pre-Auth RCE vulnerability

[POC] CVE-2026-39987 — CVE-2026-39987

CVE-2026-39987: Marimo Python Notebook Pre-Auth RCE (CVSS 9.3). Python & Nmap NSE detection scripts. Missing authentication on /terminal/ws WebSocket endpoint gives attackers a full PTY shell without any credentials. Exploited in the wild within 10 hours of disclosure. Fixed in Marimo 0.23.0.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free