PatchSiren

Dokan, Inc. CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Dokan, Inc. CVE published 2026-07-13

CVE-2026-57706

CVE-2026-57706 is a Reflected XSS vulnerability in Dokan Lite, a WordPress plugin. The vulnerability affects Dokan from n/a through <= 5.0.6. The CVSS score is 7.1, indicating a HIGH severity. This type of vulnerability allows an attacker to inject malicious scripts into the web page, potentially leading to unauthorized actions or data breaches. Administrators and users of Dokan Lite should be aware of th [truncated]

HIGH Dokan, Inc. CVE published 2026-06-15

CVE-2026-49780

CVE-2026-49780 is a HIGH severity vulnerability with a CVSS score of 8.8. It was published on 2026-06-15T21:17:22.520Z and last modified on 2026-06-15T21:24:32.790Z. The vulnerability affects Dokan versions less than or equal to 5.0.2, allowing for customer privilege escalation.