
CVE-2026-1247 The Survey plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 1.1 due to insufficient input sani… https://www.cve.org/CVERecord?id=CVE-2026-1247
Post summary
CVE-2026-1247 exposes a stored XSS flaw in the Survey plugin for WordPress, affecting all versions up to 1.1 due to insufficient input sanitization in admin settings.
