Unknown · Keepinmind Dashboard Notes · CVE-2026-9271
**Name of the Vulnerable Software and Affected Versions**
KeepInMind Dashboard Notes versions prior to 0.8.4.2
**Description**
Stored Cross-Site Scripting (XSS) occurs in the KeepInMind Dashboard Notes plugin, affecting users with Contributor level permissions or higher. Stored XSS is a flaw where a malicious script is permanently stored on the target server, such as in a database, and later executed in the browser of a user visiting the affected page.
**Recommendations**
Update to version 0.8.4.2 or later.