CVE-2026-42686HIGH NVDCVSS Score 7.1Severity HIGHPublished Jun 15, 2026Vendor unknownDescriptionSubscriber Cross Site Scripting (XSS) in EventPrime <= 4.3.2.1 versions.Referenceshttps://patchstack.com/database/wordpress/plugin/eventprime-event-calendar-management/vulnerability/wordpress-eventprime-plugin-4-3-2-1-cross-site-scripting-xss-vulnerability?_s_id=cve