What is CVE-2026-27365?
CVE-2026-27365 is a Stored XSS vulnerability in PublishPress Series plugin. It allows attackers to store malicious scripts and execute them in users' browsers. Users of PublishPress Series up to version 2.17.0 must update immediately.
Azərbaycanca: CVE-2026-27365 PublishPress Series plagini üçün Stored XSS zəifliyidir. Bu, təcavüzkara zərərli skriptləri saxlayıb istifadəçilərin brauzerində icra etdirməyə imkan verir. PublishPress Series-in 2.17.0 və əvvəlki versiyalarını istifadə edənlər dərhal yeniləmə etməlidir.
Related CVEs
link basis: same weakness class CWE-79
FAQ2
Which plugin is affected by the CVE-2026-27365 vulnerability?
The CVE-2026-27365 vulnerability affects the PublishPress Series plugin.
Which versions of PublishPress Series are vulnerable to CVE-2026-27365?
PublishPress Series versions up to and including 2.17.0 are vulnerable to this flaw.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.