WordPress · Organic Idx · CVE-2026-78261
**Name of the Vulnerable Software and Affected Versions**
Realtyna Organic IDX plugin versions prior to 5.4.2
**Description**
An unauthenticated Cross Site Scripting (XSS) issue exists, which allows an attacker to execute malicious scripts in the browser of a user without requiring prior authentication.
**Recommendations**
Update Realtyna Organic IDX plugin to version 5.4.2 or later.