CVE-2026-96270 | Ultimate Member Plugin up to 2.13.1 on WordPress Admin UI jQuery.html form_id cross site scripting (EUVD-2026-91876)

SecurityVulns

A vulnerability marked as problematic has been reported in Ultimate Member Plugin up to 2.13.1 on WordPress. This issue affects the function jQuery.html of the component Admin UI. This manipulation of the argument form_id causes cross site scripting.

This vulnerability appears as CVE-2026-96270. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More