
CVE-2026-1649 Stored XSS in WordPress Community Events Plugin via 'ce_venue_name' Parameter https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-1649
Post summary
CVE-2026-1649 is a disclosed stored XSS flaw in the WordPress Community Events Plugin, triggered through the ce_venue_name parameter; no evidence of exploitation, PoC, or patch is provided.

