
CVE-2026-6864 The CBX 5 Star Rating & Review plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page' parameter in all versions up to, and including, 1.0.7… https://www.cve.org/CVERecord?id=CVE-2026-6864
Post summary
The text discloses that the CBX 5 Star Rating & Review WordPress plugin is vulnerable to reflected XSS via the 'page' parameter in all versions up to 1.0.7, with no PoC, exploit, patch, or active exploitation details provided.
