VYPR

Ocean eComm Treasure Box

by WordPress

CVEs (1)

  • CVE-2026-81929HigOct 9, 2026
    risk 0.47cvss 7.2epss —

    The Ocean Pro Demos and Ocean eComm Treasure Box plugins for WordPress is vulnerable to Stored Cross-Site Scripting via the 'content' parameter in all versions up to, and including, 1.5.4, and 1.8.0, respectively, due to insufficient authorization, input sanitization, and output…