CVE-2026-11614 | Xpro Addons Plugin up to 1.7.2 on WordPress custom_attributes cross site scripting

SecurityVulns

A vulnerability, which was classified as problematic, has been found in Xpro Addons Plugin up to 1.7.2 on WordPress. The affected element is an unknown function. The manipulation of the argument custom_attributes leads to cross site scripting.

This vulnerability is referenced as CVE-2026-11614. Remote exploitation of the attack is possible. No exploit is available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More