CVE-2026-86609 | Download Manager Plugin up to 7.5.5 on WordPress Email-Locked Download Subscription Form cross site scripting
A vulnerability described as problematic has been identified in Download Manager Plugin up to 7.5.5 on WordPress. Affected by this vulnerability is an unknown functionality of the component Email-Locked Download Subscription Form. Such manipulation leads to cross site scripting.
This vulnerability is listed as CVE-2026-86609. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More