CVE-2026-2924 | jegstudio Gutenverse Plugin up to 3.4.6 on WordPress Parameter imageLoad cross site scripting
A vulnerability was found in jegstudio Gutenverse Plugin up to 3.4.6 on WordPress. It has been declared as problematic. Impacted is an unknown function of the component Parameter Handler. Executing a manipulation of the argument imageLoad can lead to cross site scripting.
This vulnerability appears as CVE-2026-2924. The attack may be performed from remote. There is no available exploit.