This is a heavily interactive web application, and JavaScript is required. Simple HTML interfaces are possible, but that is not what this is.
Post
Pulse WP
pulse-wp.com
did:plc:m7puovzqhxurz66hip2xwfs6
CVE-2026-9148. wpDiscuz up to 7.6.56. Stored XSS via website field. Attacker injects malicious code. Runs on every page load. Steals admin sessions. No patch available. Disable the plugin now.
Scan: pulse-wp.com
#WordPress #XSS #CyberSecurity
2026-07-05T00:00:40.229Z