What is CVE-2026-65448?
CVE-2026-65448 is an unauthenticated Cross Site Scripting (XSS) vulnerability in the AcyChecker anti-spam plugin, affecting versions up to 1.8.1. This flaw allows a remote attacker to execute arbitrary script code in a victim's browser. Updating the plugin to the latest patched version is strongly recommended.
Azərbaycanca: CVE-2026-65448, AcyChecker anti-spam plagininin 1.8.1 və əvvəlki versiyalarında autentifikasiya olunmamış Cross Site Scripting (XSS) zəifliyidir. Bu zəiflik uzaqdan hücum edən şəxsə istifadəçi brauzerində ixtiyari skript icra etməyə imkan verə bilər. Plaginini ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-79
FAQ2
Which plugin does CVE-2026-65448 affect?
This vulnerability affects the AcyChecker anti-spam plugin.
What is recommended to protect against CVE-2026-65448?
Updating the AcyChecker plugin to the latest version is recommended.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.