CVE-2026-16066 | Welcart e-Commerce Plugin up to 2.11.33 on WordPress Product Page cross site scripting
A vulnerability marked as problematic has been reported in Welcart e-Commerce Plugin up to 2.11.33 on WordPress. This issue affects some unknown processing of the component Product Page. The manipulation of the argument Product leads to cross site scripting.
This vulnerability is documented as CVE-2026-16066. The attack can be initiated remotely. There is not any exploit available.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More