A vulnerability described as problematic has been identified in wpxpo WowStore Plugin up to 4.4.24 on WordPress. This vulnerability affects unknown code. Executing a manipulation of the argument currentPostId can lead to cross site scripting.

This vulnerability is handled as CVE-2026-17162. The attack can be executed remotely. There is not any exploit available.