Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

WordPress Plugin Conflict Causes Cross-Site Scripting (XSS) in Some Themes

MINI-jf2j-wj33-vwfm
Summary

A specific WordPress plugin conflicts with certain themes, allowing hackers to inject malicious code into websites. This could lead to unauthorized access or data theft. Update the plugin and theme to a version that is known to be compatible, or switch to a different plugin or theme.

What to do
  • Update gomplate to version 4.3.3-r14.
Affected software
VendorProductAffected versionsFix available
– gomplate <= 4.3.3-r14 4.3.3-r14
Original title
MINI-jf2j-wj33-vwfm
Published: 1 Apr 2026 · Updated: 1 Apr 2026 · First seen: 1 Apr 2026