CVE-2026-7438 | boldthemes Bold Timeline Lite Plugin up to 1.2.8 on WordPress Shortcode bold_timeline_item supertitle/subtitle cross site scripting

SecurityVulns

A vulnerability was found in boldthemes Bold Timeline Lite Plugin up to 1.2.8 on WordPress. It has been rated as problematic. This vulnerability affects the function bold_timeline_item of the component Shortcode Handler. Performing a manipulation of the argument supertitle/subtitle results in cross site scripting.

This vulnerability is cataloged as CVE-2026-7438. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More