CVE-2026-96574 | wedevs User Frontend Plugin up to 4.3.12 on WordPress sanitize_text_field wpuf_payment_method cross site scripting

SecurityVulns

A vulnerability categorized as problematic has been discovered in wedevs User Frontend Plugin up to 4.3.12 on WordPress. The affected element is the function sanitize_text_field. Executing a manipulation of the argument wpuf_payment_method can lead to cross site scripting.

This vulnerability appears as CVE-2026-96574. The attack may be performed from remote. There is no available exploit.VulDB Recent EntriesRead More