CVE-2026-1634 | Subitem AL Slider Plugin up to 1.0.0 on WordPress $_SERVER['PHP_SELF'] cross site scripting (EUVD-2026-5743)
A vulnerability identified as problematic has been detected in Subitem AL Slider Plugin up to 1.0.0 on WordPress. This vulnerability affects unknown code. Performing a manipulation of the argument $_SERVER['PHP_SELF'] results in cross site scripting.
This vulnerability is reported as CVE-2026-1634. The attack is possible to be carried out remotely. No exploit exists.