CVE-2026-97336 | jtsternberg CMB2 Plugin up to 2.13.0 on WordPress file_list cross site scripting
A vulnerability was found in jtsternberg CMB2 Plugin up to 2.13.0 on WordPress. It has been declared as problematic. This affects an unknown function. The manipulation of the argument file_list results in cross site scripting.
This vulnerability is reported as CVE-2026-97336. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More