CVE-2026-39642 - WordPress Nyla theme <= 1.7 - Arbitrary Shortcode Execution vulnerability
CVE ID :CVE-2026-39642
Published : May 26, 2026, 7:51 a.m. | 1 hour, 9 minutes ago
Description :Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in SpabRice Nyla allows Code Injection. This issue affects Nyla: from n/a through 1.7.
Severity: 5.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : May 26, 2026, 7:51 a.m. | 1 hour, 9 minutes ago
Description :Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in SpabRice Nyla allows Code Injection. This issue affects Nyla: from n/a through 1.7.
Severity: 5.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...