CVE-2026-1316 | Customer Reviews for WooCommerce Plugin up to 5.97.0 on WordPress media[].href cross site scripting
A vulnerability identified as problematic has been detected in Customer Reviews for WooCommerce Plugin up to 5.97.0 on WordPress. Affected by this issue is some unknown functionality. Performing a manipulation of the argument media[].href results in cross site scripting.
This vulnerability was named CVE-2026-1316. The attack may be initiated remotely. There is no available exploit.