
CVE-2026-1503 The login_register plugin for WordPress is vulnerable to Cross-Site Request Forgery to Stored Cross-Site Scripting in all versions up to, and including, 1.2.0. This is … https://www.cve.org/CVERecord?id=CVE-2026-1503
Post summary
The CVE-2026-1503 entry details a Cross-Site Request Forgery leading to Stored Cross-Site Scripting in all login_register plugin versions up to 1.2.0, presenting a disclosure of the vulnerability without mention of PoC, exploit, or patches.
