PatchSiren

Downloads CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Downloads CVE published 2026-05-10

CVE-2022-50946

CVE-2022-50946 is a stored cross-site scripting (XSS) issue in the WordPress plugin Netroics Blog Posts Grid 1.0. According to the supplied record, the flaw comes from inadequate sanitization of the post_title parameter, allowing an authenticated editor to store malicious script content that can run in other users’ browsers when they view the affected draft or rendered content. Because the attack requires [truncated]