CVE-2026-13771 | ivole Customer Reviews for WooCommerce Plugin up to 5.113.0 Shortcode Shortcode Attribute Color cross site scripting

SecurityVulns

A vulnerability labeled as problematic has been found in ivole Customer Reviews for WooCommerce Plugin up to 5.113.0. The impacted element is the function Shortcode Attribute of the component Shortcode Handler. The manipulation of the argument Color results in cross site scripting.

This vulnerability is reported as CVE-2026-13771. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More