CVE-2026-18197: XSS
Published Jul 29, 2026
·Updated
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Link Library allows Cross-Site Scripting (XSS).
This issue affects Link Library: before 7.9.4.
Affected Software
2 affected components
Link Library<7.9.4
Ylefebvre Link Library Wordpress<7.9.4
Event History
Jul 29, 2026
CVE Published
via MITRE·06:53 AM
Data Sourced
via MITRE·06:53 AM
DescriptionWeakness
Data Sourced
via NVD·08:16 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-18197?
CVE-2026-18197 has a medium severity rating of 6.4.
2
How do I fix CVE-2026-18197?
To fix CVE-2026-18197, update Link Library to version 7.9.4 or later.
3
What type of vulnerability is CVE-2026-18197?
CVE-2026-18197 is a Cross-Site Scripting (XSS) vulnerability.
4
Which software does CVE-2026-18197 affect?
CVE-2026-18197 affects the Link Library plugin.
5
When was CVE-2026-18197 published?
CVE-2026-18197 was published on July 29, 2026.