CVE-2026-13203 | LiveComposer Live Composer Plugin up to 2.1.19 on WordPress Shortcode custom_id cross site scripting

SecurityVulns

A vulnerability marked as problematic has been reported in LiveComposer Live Composer Plugin up to 2.1.19 on WordPress. Affected by this issue is the function dslc_modules_section_front/dslc_modules_area_front of the component Shortcode Handler. The manipulation of the argument custom_id leads to cross site scripting.

This vulnerability is documented as CVE-2026-13203. The attack can be initiated remotely. There is not any exploit available.VulDB Recent EntriesRead More