{"id":"CVE-2026-76790","title":"The Estatik Real Estate Plugin WordPress plugin before 4.3.5 does not sanitise and escape several values decoded from a request parameter before reflecting them back in an unauthenticated AJAX response, leading to Reflected Cross-Site Sc…","summary":"The Estatik Real Estate Plugin WordPress plugin before 4.3.5 does not sanitise and escape several values decoded from a request parameter before reflecting them back in an unauthenticated AJAX response, leading to Reflected Cross-Site Sc…","severity":"high","cvss":7.1,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L","cwe":["CWE-79"],"product":"Estatik Real Estate Plugin","affected":["estatik_real_estate_plugin >= 4.0.1 < 4.3.5"],"published":"2026-09-19","updated":"2026-09-21","sourceUpdated":"2026-09-21T13:34:57.127","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-76790","references":[{"url":"https://wpscan.com/vulnerability/b722c7e9-7c8b-4510-85af-075b1bba9d66/","label":"contact@wpscan.com"}],"tags":["nvd","cve.org"],"epss":0.00146,"epssPercentile":0.04229,"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"partial","timestamp":"2026-09-19T13:15:02.420553Z"},"ingestedAt":"2026-09-19T06:59:13.117Z","slug":"CVE-2026-76790","body":"## Overview\n\nThe Estatik Real Estate Plugin WordPress plugin before 4.3.5 does not sanitise and escape several values decoded from a request parameter before reflecting them back in an unauthenticated AJAX response, leading to Reflected Cross-Site Scripting.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":39,"depthScoreParts":{"impact":39.1,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[{"seq":207688,"id":"CVE-2026-76790","ts":1789826663581,"field":"cvss","old":null,"new":"7.1"},{"seq":207687,"id":"CVE-2026-76790","ts":1789826663581,"field":"severity","old":"none","new":"high"}]}