🚨 CVE-2026-84935
The HT Menu WordPress plugin before 1.2.7 does not perform any capability or object-ownership check when saving navigation menu-item settings, and does not escape those stored settings when the menu is rendered, allowing users with minimal permissions such as Subscribers to store JavaScript that executes in the browser of any visitor, administrators included, who views the affected menu.
🎖@cveNotify
WPScan
HT Menu < 1.2.7 - Subscriber+ Stored XSS via Menu Settings
See details on HT Menu < 1.2.7 - Subscriber+ Stored XSS via Menu Settings CVE 2026-84935. View the latest Plugin Vulnerabilities on WPScan.

September 5, 2026 26