Skip to main content
Loading…
    CVE-2026-8895 — The kk blog card plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'blog-card' shortcode in all versions up to, and including, 1.3. This is due to insufficient input s — CVE Database · The Intelligence Room