HIGH
pixelyoursite
CVE published 2026-05-20
CVE-2026-7613
CVE-2026-7613 is a stored cross-site scripting issue in the Cost of Goods by PixelYourSite WordPress plugin, affecting versions up to and including 1.2.12. Because the flaw is reachable through the csvdata[0][cost_of_goods_value] parameter and can be triggered by unauthenticated input, site owners should treat it as a high-priority web application risk.