CVE-2026-8623 | Dearhive DearFlip Plugin up to 2.4.30 on WordPress Client-Side Script parseCSSElements post_content cross site scripting
A vulnerability labeled as problematic has been found in Dearhive DearFlip Plugin up to 2.4.30 on WordPress. This affects the function parseCSSElements of the component Client-Side Script. Executing a manipulation of the argument post_content can lead to cross site scripting.
This vulnerability is registered as CVE-2026-8623. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More