CVE-2026-18395 | Child Pages Card Plugin up to 1.8 on WordPress shortcode cross site scripting
A vulnerability described as problematic has been identified in Child Pages Card Plugin up to 1.8 on WordPress. This affects an unknown function of the component shortcode Handler. Executing a manipulation can lead to cross site scripting.
This vulnerability is tracked as CVE-2026-18395. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More