CVE-2026-18395 | Child Pages Card Plugin up to 1.8 on WordPress shortcode cross site scripting

SecurityVulns

A vulnerability described as problematic has been identified in Child Pages Card Plugin up to 1.8 on WordPress. This affects an unknown function of the component shortcode Handler. Executing a manipulation can lead to cross site scripting.

This vulnerability is tracked as CVE-2026-18395. The attack can be launched remotely. No exploit exists.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More