CVE-2026-15296 | cservit affiliate-toolkit Plugin up to 3.7.0 on WordPress shortcode atkp_product attributes cross site scripting

SecurityVulns

A vulnerability was found in cservit affiliate-toolkit Plugin up to 3.7.0 on WordPress. It has been rated as problematic. Affected by this vulnerability is the function atkp_product of the component shortcode Handler. The manipulation of the argument attributes leads to cross site scripting.

This vulnerability is documented as CVE-2026-15296. The attack can be initiated remotely. There is not any exploit available.VulDB Recent EntriesRead More