WordPress · Strong Testimonials · CVE-2026-97286
**Name of the Vulnerable Software and Affected Versions**
WP Chill Strong Testimonials versions prior to 3.3.12
**Description**
Stored Cross-site Scripting (XSS) occurs due to improper neutralization of input during web page generation. This allows a contributor to inject malicious scripts into the application.
**Recommendations**
Update WP Chill Strong Testimonials to version 3.3.12 or later.