A vulnerability was found in Cozmoslabs User Profile Builder Plugin up to 4.0.0 on WordPress. It has been classified as problematic. This impacts the function row_actions. This manipulation of the argument email causes cross site scripting. The identification of this vulnerability is CVE-2026-75964. It is possible to initiate the attack remotely. There is no exploit available.
WordPress
Vulnerability
CVE-2026-75964
VulDB
Apply vendor security patch