CVE-2026-2020 | JS Archive List Plugin up to 6.1.7 on WordPress Shortcode included deserialization (EUVD-2026-10098)
A vulnerability was found in JS Archive List Plugin up to 6.1.7 on WordPress. It has been rated as critical. Impacted is an unknown function of the component Shortcode Handler. The manipulation of the argument included leads to deserialization.
This vulnerability is referenced as CVE-2026-2020. Remote exploitation of the attack is possible. No exploit is available.