CVE-2026-97340 | meFusion Avada up to 7.16.1 on WordPress Author Page get_markup cross site scripting
A vulnerability was found in meFusion Avada up to 7.16.1 on WordPress. It has been declared as problematic. The impacted element is the function Fusion_Social_Icon::get_markup of the component Author Page. Executing a manipulation of the argument author_facebook/author_twitter/author_linkedin/author_dribble/author_whatsapp/author_email can lead to cross site scripting.
This vulnerability is registered as CVE-2026-97340. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More