PatchSiren

Kriesi CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Kriesi CVE published 2026-06-17

CVE-2026-48869

CVE-2026-48869 is a high-severity Unauthenticated Cross Site Scripting (XSS) vulnerability in Enfold theme versions <= 7.1.4. The vulnerability has a CVSS score of 7.1 and was published on 2026-06-17. Users of affected versions should apply patches immediately. The vulnerability allows attackers to inject malicious scripts into web pages viewed by other users. This issue requires no user interaction to ex [truncated]