CVE-2026-2121 | wpweaver Weaver Show Posts Plugin up to 1.8.1 on WordPress Parameters add_class cross site scripting
A vulnerability categorized as problematic has been discovered in wpweaver Weaver Show Posts Plugin up to 1.8.1 on WordPress. This affects an unknown function of the component Parameters Handler. The manipulation of the argument add_class results in cross site scripting.
This vulnerability is identified as CVE-2026-2121. The attack can be executed remotely. There is not any exploit available.
It is advisable to upgrade the affected component.