
CVE-2026-9677 The Shariff for WordPress Shariff for WordPress plugin through 1.0.11 does not sanitize or escape the shariff_infourl setting before outputting it in the frontend HTML … https://www.cve.org/CVERecord?id=CVE-2026-9677
Post summary
The post discloses that the Shariff plugin version 1.0.11 contains an unsanitized input vulnerability (CVE‑2026‑9677) but provides no proof of concept, exploit code, or patch details.


