A vulnerability was found in antoineh Football Pool Plugin up to 2.13.4 on WordPress and classified as problematic. This vulnerability affects unknown code of the component Shoutbox widget. Executing a manipulation of the argument shouttext can lead to cross site scripting.
This vulnerability is handled as CVE-2026-8790. The attack can be executed remotely. There is not any exploit available.