
🚨 HIGH SEVERITY: CVE-2026-3876 (CVSS 7.2) Prismatic WordPress plugin ≤3.7.3 vulnerable to Stored XSS via prismatic_encoded shortcode. Unauthenticated attackers can inject malicious scripts through comments. Patch immediately! #CVE #Vulnerability #PatchNow https://t.co/xEcsA1zKxu
Post summary
The post announces a stored‑XSS flaw (CVE‑2026‑3876) in Prismatic WordPress plugin (≤3.7.3) with a CVSS of 7.2, and urges users to apply the patch immediately.



