CyberRota Analysis
AI-GeneratedThe vulnerability allows unauthenticated Cross Site Scripting (XSS) in Social Media & Share Icons versions up to 2.9.9, potentially enabling attackers to execute arbitrary scripts in the context of the user's browser. This could lead to data theft, session hijacking, or defacement of web content. Organizations using affected versions should prioritize remediation to protect user data and maintain the integrity of their web applications.
CVE
CVE-2026-66623
Severity
HIGH
CVSS
7.1
EPSS
0.15%
Original NVD Description
Unauthenticated Cross Site Scripting (XSS) in Social Media & Share Icons <= 2.9.9 versions.