What is CVE-2026-65443?
CVE-2026-65443 is an unauthenticated Cross Site Scripting (XSS) vulnerability affecting BackWPup plugin versions 5.7.4 and below. This flaw could allow remote code execution, requiring users to immediately update or temporarily disable the plugin.
Azərbaycanca: CVE-2026-65443, BackWPup plaginin 5.7.4 və daha əvvəlki versiyalarında autentifikasiya olmadan işləyən Cross Site Scripting (XSS) zəifliyidir. Bu boşluq uzaqdan kod icrasına imkan yarada bilər, istifadəçilər dərhal plaqini yeniləməli və ya müvəqqəti olaraq deaktiv etməlidir.
Related CVEs
link basis: same weakness class CWE-79
FAQ2
Which versions of the BackWPup plugin are affected by CVE-2026-65443?
This vulnerability affects BackWPup plugin versions 5.7.4 and below.
What risk does the CVE-2026-65443 XSS vulnerability pose and what should users do?
This flaw could allow remote code execution, so users must immediately update or temporarily disable the plugin.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.