CVE-2026-86609 | Download Manager Plugin up to 7.5.5 on WordPress Email-Locked Download Subscription Form cross site scripting

SecurityVulns

A vulnerability described as problematic has been identified in Download Manager Plugin up to 7.5.5 on WordPress. Affected by this vulnerability is an unknown functionality of the component Email-Locked Download Subscription Form. Such manipulation leads to cross site scripting.

This vulnerability is listed as CVE-2026-86609. The attack may be performed from remote. There is no available exploit.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More