
CVE-2026-27058 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PenciDesign Penci Podcast penci-podcast allows DOM-Based XSS.Thi… https://www.cve.org/CVERecord?id=CVE-2026-27058
Post summary
A new CVE-2026-27058 vulnerability is disclosed, describing a DOM-based XSS flaw in the PenciDesign Penci Podcast plugin, with technical details provided but no PoC, exploit, or patch referenced.
