CVE-2026-22204 | gVectors wpDiscuz up to 7.6.46 Cookie urldecode comment_author_email injection
A vulnerability was found in gVectors wpDiscuz up to 7.6.46 and classified as problematic. Affected by this issue is the function urldecode of the component Cookie Handler. The manipulation of the argument comment_author_email results in injection.
This vulnerability is reported as CVE-2026-22204. The attack can be launched remotely. No exploit exists.
It is suggested to upgrade the affected component.