CVE-2026-76585
The Customer Reviews for WooCommerce WordPress plugin before 5.118.0 does not sanitise and escape the content of customer reviews received v
CVSS
—
Sin CVSS
EPSS
0.2%
p7
KEV
—
Exploit Today
2
0-100
Publicado: 30 ago 2026 · Última mod.: 30 ago 2026
Sin historial EPSS suficiente todavía.
The Customer Reviews for WooCommerce WordPress plugin before 5.118.0 does not sanitise and escape the content of customer reviews received via one of its endpoints, which could allow unauthenticated users to perform Stored Cross-Site Scripting attacks.
Sin CVEs relacionados por CWE o producto.