A vulnerability marked as problematic has been reported in gVectors wpForo Forum up to 2.4.15. The impacted element is an unknown function. This manipulation causes cross site scripting.

The identification of this vulnerability is CVE-2026-28561. It is possible to initiate the attack remotely. There is no exploit available.

It is suggested to upgrade the affected component.