Medium severity5.4NVD Advisory· Published Feb 21, 2023· Updated Jun 17, 2026
CVE-2020-36656
CVE-2020-36656
Description
The Spectra WordPress plugin before 1.15.0 does not sanitize user input as it reaches its style HTML attribute, allowing contributors to conduct stored XSS attacks via the plugin's Gutenberg blocks.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/10f7e892-7a91-4292-b03e-6ad75756488bnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.