Unrated severityNVD Advisory· Published Sep 17, 2026
CVE-2026-88792
CVE-2026-88792
Description
The Dictionary WordPress plugin through 1.0 does not have authorisation, sanitisation or escaping in place when adding or updating dictionary entries, allowing unauthenticated users to store arbitrary web scripts which will execute when a user views an affected entry.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <=1.0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.