CVE-2026-2424 | applixir Reward Video Ad for WordPress Plugin up to 1.6 on WordPress Setting cross site scripting
A vulnerability described as problematic has been identified in applixir Reward Video Ad for WordPress Plugin up to 1.6 on WordPress. Affected by this issue is some unknown functionality of the component Setting Handler. Executing a manipulation can lead to cross site scripting.
This vulnerability is registered as CVE-2026-2424. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is recommended.