CVE-2026-78563Disclosure

LOW

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage.

0.0/ 10 priority

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-08-25: 2Technical Details · 2026-08-25: 208-25
Signal classification1 categories
Disclosure
2100.0%
Referenced assets3 URLs
Full discourse2 posts
  • Hugo | DevOps | Cybersecurity 🇱🇻@HugoValters
    Disclosure

    CVE-2026-78563 - Stored XSS in NotificationX Pro plugin for WordPress (<= 3.1.4). Unauthenticated script injection. CVSS 7.2. Audit sites now. #CVE #WordPress #infosec https://www.valtersit.com/cve/CVE-2026-78563/ #CVE #CVEAlert #infosec #SysAdmin #cybersecurity #Linux #devsecops #devops #developer #sysadmin #100daysofcode #git #github #gitlab #redteam #blueteam #ethicalhacker #ethicalhacking #cybersecurityawareness #cybersecurity #cybersecuritynews #cybersecuritytips #python #hacker #linux #kali #ubuntu #debian #ukraine #spain #ireland #unitedkingdom #canada #finland #estonia #lithuania #ireland #hungary #denmark #norway #malta #mexico #switczerland #china #france #germany

    Post summary

    The tweet announces a CVE describing a Stored XSS vulnerability in the NotificationX Pro WordPress plugin, providing specific technical details but no PoC, exploit code, or active exploitation notice.

    0000049
    1.0K followersView on X
  • MalwareObserver@MalwareObserver
    Disclosure

    🐛 VULNERABILITIES CVE Notify: 🚨 [CVE-2026-78563](https://patchstack.com/database/wordpress/plugin/notificationx-pro/vulnerability... https://patchstack.com/database/wordpress/plugin/notificationx-pro/vulnerability/wordpress-notificationx-pro-plugin-3-1-4-cross-site-scripting...

    Post summary

    The tweet alerts to a newly disclosed CVE‑2026‑78563, a cross‑site‑scripting vulnerability in NotificationX Pro, but offers no PoC, exploit tool, patch information, or evidence of active exploitation.

    0000032
    27 followersView on X

Explore more