CVE-2026-88903 - Topcontent <= 1.2.1 - Unauthenticated Stored XSS via Content Webhook
CVE ID :CVE-2026-88903 Published : Oct. 11, 2026, 7:17 a.m. | 6 hours, 13 minutes ago Description :The Topcontent WordPress plugin through 1.2.1 does not properly authorise one of its request handlers and disables HTML sanitisation before storing the submitted content, allowing...