CVE-2026-89274 | brechtvds WP Recipe Maker Plugin up to 10.8.1 on WordPress Shortcode sanitize_metadata reviewBody injection
A vulnerability was found in brechtvds WP Recipe Maker Plugin up to 10.8.1 on WordPress. It has been declared as critical. This issue affects the function WPRM_Metadata::sanitize_metadata of the component Shortcode Handler. Such manipulation of the argument reviewBody leads to injection.
This vulnerability is referenced as CVE-2026-89274. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More