CVE-2026-15383 | Blog Floating Button Plugin up to 1.4.20 on WordPress REST endpoint User-Agent cross site scripting

SecurityVulns

A vulnerability, which was classified as problematic, has been found in Blog Floating Button Plugin up to 1.4.20 on WordPress. Affected is an unknown function of the component REST endpoint. The manipulation of the argument User-Agent leads to cross site scripting.

This vulnerability is referenced as CVE-2026-15383. Remote exploitation of the attack is possible. No exploit is available.VulDB Recent EntriesRead More