CVE-2026-94378 | psmplugins SupportCandy Plugin up to 3.5.3 on WordPress name cross site scripting (EUVD-2026-91878)

SecurityVulns

A vulnerability classified as problematic has been found in psmplugins SupportCandy Plugin up to 3.5.3 on WordPress. The affected element is an unknown function. Performing a manipulation of the argument Name results in cross site scripting.

This vulnerability is known as CVE-2026-94378. Remote exploitation of the attack is possible. No exploit is available.VulDB Recent EntriesRead More