A vulnerability labeled as problematic has been found in Ays Pro Secure Copy Content Protection and Content Locking Plugin up to 4.9.8 on WordPress. This affects an unknown part of the component Header Handler. Executing a manipulation of the argument X-Forwarded-For can lead to cross site scripting.
The identification of this vulnerability is CVE-2026-1320. The attack may be launched remotely. There is no exploit available.