CVE-2026-93654 | codename065 Premium Packages Plugin up to 7.2.1 on WordPress permission_callback cart_items cross site scripting
A vulnerability identified as problematic has been detected in codename065 Premium Packages Plugin up to 7.2.1 on WordPress. This affects the function permission_callback. This manipulation of the argument cart_items causes cross site scripting.
This vulnerability appears as CVE-2026-93654. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More