
CVE-2026-4353 The CI HUB Connector plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'id' attribute of the `cihub_metadata` shortcode in all versions up to, a… https://www.cve.org/CVERecord?id=CVE-2026-4353
Post summary
The post discloses that the CI HUB Connector WordPress plugin is vulnerable to stored XSS via its 'id' shortcode attribute, but does not mention any PoC, exploit code, patch, or active exploitation.


