Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
5.1

Survey Maker Plugin on WordPress: Malicious Script Execution

CVE-2026-26370
Summary

The Survey Maker plugin for WordPress has a security flaw that could allow an attacker to run malicious code on your website and potentially harm your users. If you're using an affected version, update the plugin to the latest version as soon as possible to protect your site and users. This will prevent unauthorized code from being executed.

Original title
WordPress Plugin "Survey Maker" versions 5.1.7.7 and prior contain a cross-site scripting vulnerability. If this vulnerability is exploited, an arbitrary script may be executed in the user's web br...
Original description
WordPress Plugin "Survey Maker" versions 5.1.7.7 and prior contain a cross-site scripting vulnerability. If this vulnerability is exploited, an arbitrary script may be executed in the user's web browser.
nvd CVSS3.0 6.1
nvd CVSS4.0 5.1
Vulnerability type
CWE-79 Cross-site Scripting (XSS)
Published: 20 Feb 2026 · Updated: 11 Mar 2026 · First seen: 6 Mar 2026