CVE-2026-0552 | mra13 Simple Shopping Cart Plugin up to 5.2.4 on WordPress Shortcode wpsc_display_product cross site scripting (EUVD-2026-18971)
A vulnerability categorized as problematic has been discovered in mra13 Simple Shopping Cart Plugin up to 5.2.4 on WordPress. Affected by this vulnerability is the function wpsc_display_product of the component Shortcode Handler. Executing a manipulation can lead to cross site scripting.
This vulnerability is registered as CVE-2026-0552. It is possible to launch the attack remotely. No exploit is available.