CVE-2026-82883
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Marcus Login With Ajax allows Reflected XSS. This issue affects Login With Ajax: from n/a through 4.5.1.
- Published Sep 2, 2026
- CVSS 7.1 high
- 0.3% chance of exploitation in the next 30 days (EPSS)