CVE-2026-96558 | Expresstech Quiz and Survey Master Plugin up to 11.2.6 on WordPress Audit Trail qsm_hidden_questions cross site scripting
A vulnerability was found in Expresstech Quiz and Survey Master Plugin up to 11.2.6 on WordPress. It has been declared as problematic. This impacts an unknown function of the component Audit Trail. Executing a manipulation of the argument qsm_hidden_questions can lead to cross site scripting.
This vulnerability appears as CVE-2026-96558. The attack may be performed from remote. There is no available exploit.VulDB Recent EntriesRead More