CVE-2026-96574 | wedevs User Frontend Plugin up to 4.3.12 on WordPress sanitize_text_field wpuf_payment_method cross site scripting
A vulnerability categorized as problematic has been discovered in wedevs User Frontend Plugin up to 4.3.12 on WordPress. The affected element is the function sanitize_text_field. Executing a manipulation of the argument wpuf_payment_method can lead to cross site scripting.
This vulnerability appears as CVE-2026-96574. The attack may be performed from remote. There is no available exploit.VulDB Recent EntriesRead More