MEDIUM
Katie Seaborn
CVE published 2026-10-08
CVE-2026-27420
A Cross Site Scripting (XSS) vulnerability exists in the WordPress Zotpress plugin versions up to 7.4.4. This issue, known as CVE-2026-27420, was published on October 8, 2026, and has a CVSS score of 6.5, categorized as MEDIUM severity. The vulnerability allows for Stored XSS and affects the Zotpress plugin by Katie Seaborn. Affected product deployments should be identified in managed environments, and ow [truncated]