CVE-2026-1823 | Consensus Embed Plugin up to 1.6 on WordPress Shortcode src cross site scripting
A vulnerability classified as problematic was found in Consensus Embed Plugin up to 1.6 on WordPress. This affects an unknown part of the component Shortcode Handler. Such manipulation of the argument src leads to cross site scripting.
This vulnerability is listed as CVE-2026-1823. The attack may be performed from remote. There is no available exploit.