CVE-2026-3228 | NextScripts Plugin up to 4.4.6 on WordPress Shortcode nxs_fbembed snapFB cross site scripting
A vulnerability classified as problematic was found in NextScripts Plugin up to 4.4.6 on WordPress. Affected by this issue is the function nxs_fbembed of the component Shortcode Handler. The manipulation of the argument snapFB results in cross site scripting.
This vulnerability is cataloged as CVE-2026-3228. The attack may be launched remotely. There is no exploit available.