The BetterDocs WordPress plugin before 4.5.5 does not sanitise an AI-generated documentation summary before storing and outputting it, and the feature that generates it is exposed to unauthenticated users, allowing them to store a malicious payload via prompt injection that executes in the browser of any visitor who views the affected page, including administrators.
Metrics
Affected Vendors & Products
References
History
Thu, 16 Jul 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Thu, 16 Jul 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The BetterDocs WordPress plugin before 4.5.5 does not sanitise an AI-generated documentation summary before storing and outputting it, and the feature that generates it is exposed to unauthenticated users, allowing them to store a malicious payload via prompt injection that executes in the browser of any visitor who views the affected page, including administrators. | |
| Title | BetterDocs < 4.5.5 - Unauthenticated Stored XSS via AI Doc Summarizer Prompt Injection | |
| References |
|
Status: PUBLISHED
Assigner: WPScan
Published: 2026-07-16T06:00:02.874Z
Updated: 2026-07-16T12:33:27.605Z
Reserved: 2026-06-05T12:01:56.518Z
Link: CVE-2026-11371
Updated: 2026-07-16T12:33:20.875Z
Status : Deferred
Published: 2026-07-16T07:16:46.480
Modified: 2026-07-16T13:43:05.487
Link: CVE-2026-11371
No data.