
CVE-2026-1902 Stored XSS in Hammas Calendar WordPress Plugin via 'apix' Parameter https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-1902
Post summary
The entry announces a stored XSS vulnerability in the Hammas Calendar WordPress plugin triggered through the 'apix' parameter, with no PoC, exploit, or patch details provided.


