{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","feed_url":"https://feed.craftedsignal.io/products/vikrentitems--flexible-rental-management-system/feed.json","home_page_url":"https://feed.craftedsignal.io/","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":7.2,"id":"CVE-2026-16143"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["VikRentItems – Flexible Rental Management System"],"_cs_severities":["high"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["WordPress"],"content_html":"\u003cp\u003eThe VikRentItems Flexible Rental Management System plugin for WordPress (versions 1.2.1 and earlier) contains a critical stored Cross-Site Scripting (XSS) vulnerability. The flaw exists within the saveorder() function, which fails to adequately sanitize the customer email input field. Specifically, the plugin utilizes sanitize_text_field(), which does not properly neutralize HTML attribute-breaking characters such as double quotes.\u003c/p\u003e\n\u003cp\u003eWhen a user submits a booking, the malicious input is stored in the database. The vulnerability is triggered when an administrator or privileged user views the order within the backend. The editorder template echoes the stored email value directly into an HTML input element's value attribute without applying esc_attr(). This allows an unauthenticated attacker to inject JavaScript payloads that will execute in the browser session of the administrator, potentially leading to unauthorized actions or session hijacking.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows unauthenticated attackers to execute arbitrary JavaScript in the context of an administrator's browser session. This can be used to capture session cookies, perform unauthorized administrative operations, or redirect users to malicious sites, compromising the integrity of the WordPress backend.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate the VikRentItems plugin to the latest available version provided by the vendor to receive the security patch.\u003c/li\u003e\n\u003cli\u003eReview backend access logs for suspicious input patterns in booking checkout requests.\u003c/li\u003e\n\u003cli\u003eAudit administrative sessions for unauthorized activities following the identification of malicious XSS payloads in order management interfaces.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-05T08:06:14Z","date_published":"2026-08-05T08:06:14Z","id":"https://feed.craftedsignal.io/briefs/2026-08-vikrentitems-xss/","summary":"The VikRentItems WordPress plugin contains a stored XSS vulnerability in the checkout booking form allowing unauthenticated attackers to execute arbitrary scripts in the administrative backend.","title":"Stored XSS Vulnerability in VikRentItems WordPress Plugin","url":"https://feed.craftedsignal.io/briefs/2026-08-vikrentitems-xss/"}],"language":"en","title":"CraftedSignal Threat Feed - VikRentItems – Flexible Rental Management System","version":"https://jsonfeed.org/version/1.1"}