
CVE-2026-5742 The UsersWP plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to and including 1.2.60. This is due to insufficient input sanitization of … https://www.cve.org/CVERecord?id=CVE-2026-5742
Post summary
The UsersWP plugin is vulnerable to Stored Cross‑Site Scripting (CVE‑2026‑5742) due to insufficient input sanitization.


