
CVE-2026-11591 The Widgets for Google Reviews plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 13.3 due to … https://www.cve.org/CVERecord?id=CVE-2026-11591
Post summary
The comment announces a stored XSS vulnerability in the Widgets for Google Reviews WordPress plugin (versions up to 13.3) with no PoC, exploit, patch, or active exploitation details provided.
