CVE-2026-1071 | Carta Online Plugin up to 2.13.0 on WordPress Setting cross site scripting
A vulnerability was found in Carta Online Plugin up to 2.13.0 on WordPress. It has been declared as problematic. This affects an unknown function of the component Setting Handler. Such manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2026-1071. The attack may be launched remotely. There is no exploit available.