
CVE-2026-18109 The W3 Total Cache plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Author Name in all versions up to, and including, 2.10.3 due to insuf… https://www.cve.org/CVERecord?id=CVE-2026-18109
Post summary
CVE-2026-18109 is a stored cross‑site scripting issue in W3 Total Cache plugin for WordPress up to version 2.10.3. The post merely records the vulnerability without providing PoC, exploit, or mitigation details.


