CVE-2026-7436 | wpclever WPC Badge Management for WooCommerce Plugin up to 3.1.6 on WordPress Shortcode wpcbm_best_seller text cross site scripting

SecurityVulns

A vulnerability marked as problematic has been reported in wpclever WPC Badge Management for WooCommerce Plugin up to 3.1.6 on WordPress. Affected by this issue is the function wpcbm_best_seller of the component Shortcode Handler. The manipulation of the argument text leads to cross site scripting.

This vulnerability is listed as CVE-2026-7436. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More