Vulnerabilities and security researches foripgp-visitors-origin ipgp-visitors-origin
Direction: ascendingSep 08, 2026
IPGP Visitors Origin # CVE-2026-81404
- CVE, Research URL
- Home page URL
- Application
- Date
- Sep 05, 2026
- Research Description
- The IPGP Visitors Origin WordPress plugin before 1.6 does not sanitise or escape user input before reflecting it back in the HTTP response, allowing unauthenticated attackers to perform Reflected Cross-Site Scripting attacks against users who are tricked into submitting a crafted request.
- Affected versions
-
max 1.6.
- Status
-
vulnerable