
CVE-2026-13712 The Divi WordPress theme before 5.9.0 does not properly escape some of its Social Media Follow module settings before outputting them in link attributes, allowing use… https://www.cve.org/CVERecord?id=CVE-2026-13712
Post summary
The text announces CVE‑2026‑13712 as an improper escaping vulnerability in the Divi WordPress theme, potentially permitting XSS attacks, but provides no PoC, exploit code, or evidence of active exploitation or patches.

