CVE-2026-5717 | knighthawk VI Include Post By Plugin up to 0.4.200706 on WordPress Shortcode include-post-by-cat cross site scripting (EUVD-2026-22847)
A vulnerability, which was classified as problematic, has been found in knighthawk VI Include Post By Plugin up to 0.4.200706 on WordPress. Affected by this vulnerability is the function include-post-by-cat of the component Shortcode Handler. Performing a manipulation results in cross site scripting.
This vulnerability is reported as CVE-2026-5717. The attack is possible to be carried out remotely. No exploit exists.