A vulnerability described as problematic has been identified in myCred Plugin up to 3.0.4 on WordPress. Affected by this vulnerability is an unknown functionality. Executing a manipulation can lead to cross site scripting.
This vulnerability appears as CVE-2026-42676. The attack may be performed from remote. There is no available exploit.