Loading market data...
← Back to CVE feed

CVE-2026-83544

UNKNOWN View on NVD ↗

Description

The Greenshift WordPress plugin before 13.2.0 does not properly escape a block animation attribute before outputting it within an HTML attribute, allowing users with contributor-level access and above to inject arbitrary web scripts that execute when the content is viewed.

Published: Sep 05, 2026 07:17 UTC Modified: Sep 05, 2026 07:17 UTC