
CVE-2026-6711 The Website LLMs.txt plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'tab' parameter in all versions up to, and including, 8.2.6. This is d… https://www.cve.org/CVERecord?id=CVE-2026-6711
Post summary
The Website LLMs.txt WordPress plugin has a reflected XSS vulnerability through the 'tab' parameter in all versions up to 8.2.6, with no mention of patches, exploits, or active usage.
