EIP-2026-114226
PRE-CVEWordPress Plugin WP Prayer version 1.6.1 - 'prayer_messages' Stored Cross-Site Scripting (XSS) (Authenticated)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-114226. PoCs published by Bastijn Ouwendijk.
AI-analyzed exploit summary This is a writeup describing a stored XSS vulnerability in the WordPress Plugin WP Prayer version 1.6.1 and earlier. The exploit involves injecting a malicious script into the 'prayer_messages' field, which executes when the prayer requests are viewed.
Description
WordPress Plugin WP Prayer version 1.6.1 - 'prayer_messages' Stored Cross-Site Scripting (XSS) (Authenticated)
Exploits (1)
This is a writeup describing a stored XSS vulnerability in the WordPress Plugin WP Prayer version 1.6.1 and earlier. The exploit involves injecting a malicious script into the 'prayer_messages' field, which executes when the prayer requests are viewed.