{"api_version":"1","generated_at":"2026-09-05T09:13:28+00:00","cve":"CVE-2026-84934","urls":{"html":"https://cve.report/CVE-2026-84934","api":"https://cve.report/api/cve/CVE-2026-84934.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2026-84934","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2026-84934"},"summary":{"title":"JCH Optimize < 6.0.1 - Subscriber+ Stored XSS via getcacheinfo Task Override","description":"The JCH Optimize WordPress plugin before 6.0.1 does not perform a capability check on one of its authenticated AJAX actions and lets the request choose which internal action runs, allowing any authenticated users such as Subscribers to import arbitrary JCH Optimize WordPress plugin before 6.0.1 settings and store a script that executes in the browser of any visitor or administrator viewing the site.","state":"PUBLISHED","assigner":"WPScan","published_at":"2026-09-05 07:17:14","updated_at":"2026-09-05 07:17:14"},"problem_types":["CWE-79 Cross-Site Scripting (XSS)"],"metrics":[],"references":[{"url":"https://wpscan.com/vulnerability/d808ad17-d20e-4ee5-94f3-935c10cde772/","name":"https://wpscan.com/vulnerability/d808ad17-d20e-4ee5-94f3-935c10cde772/","refsource":"contact@wpscan.com","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-84934","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84934","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"Unknown","product":"JCH Optimize","version":"affected 6.0.1 semver","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[{"source":"CNA","value":"Artus KG","lang":"en"},{"source":"CNA","value":"WPScan","lang":"en"}],"nvd_cpes":[],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"cna":{"affected":[{"defaultStatus":"unaffected","product":"JCH Optimize","vendor":"Unknown","versions":[{"lessThan":"6.0.1","status":"affected","version":"0","versionType":"semver"}]}],"credits":[{"lang":"en","type":"finder","value":"Artus KG"},{"lang":"en","type":"coordinator","value":"WPScan"}],"descriptions":[{"lang":"en","value":"The JCH Optimize WordPress plugin before 6.0.1 does not perform a capability check on one of its authenticated AJAX actions and lets the request choose which internal action runs, allowing any authenticated users such as Subscribers to import arbitrary JCH Optimize WordPress plugin before 6.0.1 settings and store a script that executes in the browser of any visitor or administrator viewing the site."}],"problemTypes":[{"descriptions":[{"description":"CWE-79 Cross-Site Scripting (XSS)","lang":"en","type":"CWE"}]}],"providerMetadata":{"dateUpdated":"2026-09-05T06:00:10.114Z","orgId":"1bfdd5d7-9bf6-4a53-96ea-42e2716d7a81","shortName":"WPScan"},"references":[{"tags":["exploit","vdb-entry","technical-description"],"url":"https://wpscan.com/vulnerability/d808ad17-d20e-4ee5-94f3-935c10cde772/"}],"source":{"discovery":"EXTERNAL"},"title":"JCH Optimize < 6.0.1 - Subscriber+ Stored XSS via getcacheinfo Task Override","x_generator":{"engine":"WPScan CVE Generator"}}},"cveMetadata":{"assignerOrgId":"1bfdd5d7-9bf6-4a53-96ea-42e2716d7a81","assignerShortName":"WPScan","cveId":"CVE-2026-84934","datePublished":"2026-09-05T06:00:10.114Z","dateReserved":"2026-09-02T16:26:43.553Z","dateUpdated":"2026-09-05T06:00:10.114Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.2"},"nvd":{"publishedDate":"2026-09-05 07:17:14","lastModifiedDate":"2026-09-05 07:17:14","problem_types":["CWE-79 Cross-Site Scripting (XSS)"],"metrics":[],"configurations":[]},"legacy_mitre":{"record":{"CveYear":"2026","CveId":"84934","Ordinal":"1","Title":"JCH Optimize < 6.0.1 - Subscriber+ Stored XSS via getcacheinfo T","CVE":"CVE-2026-84934","Year":"2026"},"notes":[{"CveYear":"2026","CveId":"84934","Ordinal":"1","NoteData":"The JCH Optimize WordPress plugin before 6.0.1 does not perform a capability check on one of its authenticated AJAX actions and lets the request choose which internal action runs, allowing any authenticated users such as Subscribers to import arbitrary JCH Optimize WordPress plugin before 6.0.1 settings and store a script that executes in the browser of any visitor or administrator viewing the site.","Type":"Description","Title":"JCH Optimize < 6.0.1 - Subscriber+ Stored XSS via getcacheinfo T"}]}}}