Unauthenticated Stored Cross-Site Scripting in WPS Limit Login WordPress Plugin (CVE-2026-93622)  – 2026092808

Imported from official source

Announcement

Severity HIGH Threat Category Vulnerability – Stored Cross-Site Scripting (CWE-79) Affected Platforms WordPress sites running the WPS Limit Login plugin […] The post Unauthenticated Stored Cross-Site Scripting in WPS Limit Login WordPress Plugin (CVE-2026-93622)  – 2026092808 first appeared on Bhutan Computer Incident Response Team.

Read the original at the source: https://btcirt.bt/unauthenticated-stored-cross-site-scripting-in-wps-limit-login-wordpress-plugin-cve-2026-93622-2026092808/

Officially imported this from Bhutan Computer Incident Response Team’s own source. If you work there, claiming the profile and verifying the domain lets you choose to show the full text here.

Provenance

Organization
Bhutan Computer Incident Response Team — imported from official source
Official source
https://btcirt.bt/category/newsevents/advisory/feed/ RSS
Imported
October 03, 2026 20:42
Versions
1 recorded
Identity
https://btcirt.bt/?p=39000

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.