← WordPress Vulnerabilities
WordPress security by component

Tailored Tools

Tailored Tools (tailored-tools) is a WordPress plugin with 2 published CVE records in this archive. The latest tracked vulnerability was published Aug 31, 2026; the highest published CVSS base score is 7.1.

Plugin slug: tailored-tools

CVE-2026-81765: Tailored Tools permits unauthenticated XSS

Tailored Tools through 3.0.2 allows an unauthenticated attacker to inject script into affected output. The script executes when a victim interacts with that output and can act within the victim's browser session.

PublishedAug 31, 2026
Known safe version3.0.3
Published vulnerabilities for tailored-tools
Safe version
Aug 31, 2026 CVE-2026-81765
Tailored Tools permits unauthenticated XSS
Tailored Tools through 3.0.2 allows an unauthenticated attacker to inject script into affected output. The script executes when a victim interacts with that output and can act within the victim's browser session.
3.0.3
CVE7.1
NVDPending
Dec 02, 2024 CVE-2024-52503
Tailored Tools: Cross-site scripting
Tailored Tools is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
See mitigation notes
CVE6.5
NVDPending