[Medium] CVE-2026-8977 – The WP GDPR Cookie Consent plugin for WordPress is vulnerable to Stored Cross-Si...
Medium CVE-2026-8977 The WP GDPR Cookie Consent plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'ninja_gdpr_ajax_actions' AJAX action in versions up to, and including, 1.0.0. This is due to missing capability and nonce checks on the handleAjaxCalls() function, combined...