
CVE-2026-1575 The Schema Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's `itemscope` shortcode in all versions up to, and including, 1.0 … https://www.cve.org/CVERecord?id=CVE-2026-1575
Post summary
The text announces CVE-2026-1575, a stored XSS vulnerability in the Schema Shortcode WordPress plugin via its itemscope shortcode, without indicating PoC, exploit code, patch, or active exploitation.
