PatchSiren

AI Share & Summarize CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM AI Share & Summarize CVE published 2026-06-24

CVE-2026-10531

CVE-2026-10531 is a Stored Cross-Site Scripting (XSS) vulnerability in the AI Share & Summarize WordPress plugin before version 2.0.4. The plugin does not properly sanitize and escape some of its shortcode attributes, allowing users with the Contributor role and above to perform Stored Cross-Site Scripting attacks. The vulnerability has a CVSS score of 5.4 and a severity of MEDIUM. The CVE was published o [truncated]