CVE-2025-8615 | CubeWP Plugin up to 1.1.26 on WordPress Shortcode cubewp_shortcode_taxonomy cross site scripting (EUVD-2026-3142)
A vulnerability was found in CubeWP Plugin up to 1.1.26 on WordPress. It has been classified as problematic. The impacted element is the function cubewp_shortcode_taxonomy of the component Shortcode Handler. This manipulation causes cross site scripting.
The identification of this vulnerability is CVE-2025-8615. It is possible to initiate the attack remotely. There is no exploit available.