CVE-2026-3851 | Elegant mes Divi Plugin up to 4.27.6 on WordPress Dynamic Content feature enable_html cross site scripting

SecurityVulns

A vulnerability categorized as problematic has been discovered in Elegant mes Divi Plugin up to 4.27.6 on WordPress. This impacts the function et_builder_sanitize_dynamic_content_fields/et_builder_filter_resolve_default_dynamic_content of the component Dynamic Content feature. Such manipulation of the argument enable_html leads to cross site scripting.

This vulnerability is referenced as CVE-2026-3851. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More