CVE-2026-89412 | Cozmos Labs TranslatePress Plugin up to 3.3.5 on WordPress Translation Memory Suggestion Panel html_entity_decode original cross site scripting

SecurityVulns

A vulnerability marked as problematic has been reported in Cozmos Labs TranslatePress Plugin up to 3.3.5 on WordPress. The impacted element is the function html_entity_decode of the component Translation Memory Suggestion Panel. This manipulation of the argument original causes cross site scripting.

The identification of this vulnerability is CVE-2026-89412. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More