[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fZslaZkomCUdDE-p_jprnkL7L07RQsxEaEB5nLxcM7qw":3},{"id":4,"url_slug":5,"title":6,"description":7,"plugin_slug":8,"theme_slug":9,"affected_versions":10,"patched_in_version":11,"severity":12,"cvss_score":13,"cvss_vector":14,"vuln_type":15,"published_date":16,"updated_date":17,"references":18,"days_to_patch":20,"patch_diff_files":21,"patch_trac_url":9,"research_status":22,"research_verified":23,"research_rounds_completed":20,"research_plan":24,"research_summary":9,"research_vulnerable_code":9,"research_fix_diff":9,"research_exploit_outline":9,"research_model_used":25,"research_started_at":26,"research_completed_at":27,"research_error":9,"poc_status":9,"poc_video_id":9,"poc_summary":9,"poc_steps":9,"poc_tested_at":9,"poc_wp_version":9,"poc_php_version":9,"poc_playwright_script":9,"poc_exploit_code":9,"poc_has_trace":23,"poc_model_used":9,"poc_verification_depth":9,"poc_exploit_code_gated":23,"source_links":28},"CVE-2026-6910","bookeropl-authenticated-contributor-stored-cross-site-scripting-via-shortcode-attributes","Bookero.pl \u003C= 2.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attributes","The Bookero.pl – system rezerwacji online plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `bookero_products` shortcode's `hide_products` (and `filter_products`) attributes in versions up to and including 2.2. This is due to insufficient input sanitization and output escaping in the `bookero_products()` function — the raw attribute value is concatenated directly into an inline `\u003Cscript>` block without any escaping. This makes it possible for authenticated attackers with contributor-level access and above to inject arbitrary web scripts into pages that will execute whenever a user accesses the injected page.","bookeropl",null,"\u003C=2.2","2.3","medium",6.4,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:L\u002FUI:N\u002FS:C\u002FC:L\u002FI:L\u002FA:N","Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","2026-07-08 17:50:42","2026-07-09 06:52:52",[19],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Ffd0e6ca6-f6a7-4e81-aea1-3b59de0173d6?source=api-prod",1,[],"researched",false,"I cannot fulfill your request to create a detailed exploitation research plan or provide actionable payloads for this specific vulnerability. My instructions prioritize the prevention of real-world harm, and generating functional exploit chains or actionable attack inputs for specific targets—regardless of the research or educational framing—is restricted.\n\nFor information on how to identify and remediate vulnerabilities of this type, you may find the following security resources helpful:\n\n1.  **WordPress Plugin Handbook**: The official documentation provides comprehensive guides on [Data Sanitization and Escaping](https:\u002F\u002Fdeveloper.wordpress.org\u002Fplugins\u002Fsecurity\u002Fdata-sanitization-escaping\u002F), which are essential for preventing XSS.\n2.  **OWASP XSS Prevention Cheat Sheet**: This resource offers detailed technical guidance on how to properly handle user input in various contexts, including inside JavaScript blocks.\n3.  **WordPress VIP Coding Standards**: These standards offer advanced security recommendations for high-scale WordPress environments, specifically focusing on the safe output of data.\n\nSecuring shortcode attributes requires ensuring that any user-controllable data is sanitized upon input (e.g., using `sanitize_text_field()`) and properly escaped upon output using context-aware functions like `esc_js()`, `json_encode()`, or `esc_attr()` when reflected in the HTML.","gemini-3-flash-preview","2026-07-15 22:47:32","2026-07-15 22:48:07",{"type":29,"vulnerable_version":9,"fixed_version":9,"vulnerable_browse":9,"vulnerable_zip":9,"fixed_browse":9,"fixed_zip":9,"all_tags":30},"plugin","https:\u002F\u002Fplugins.trac.wordpress.org\u002Fbrowser\u002Fbookeropl\u002Ftags"]