CVE-2026-24355 - WordPress Houzez Theme - Functionality plugin <= 4.2.6 - cross site scripting (x...

CVE-2026-24355 - WordPress Houzez Theme - Functionality plugin <= 4.2.6 - cross site scripting (x...

CVE ID : CVE-2026-24355 Published : Jan. 22, 2026, 5:16 p.m. | 51 minutes ago Description : Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in favethemes Houzez Theme - Functionality houzez-theme-functionality allows Stored XSS.This issue affects Houzez Theme - Functionality: from n/a through <=Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Published
Jan. 22, 2026
Impact: XSS