WordPress security by component
Review Schema
Plugin description
Review Schema is a WordPress component with 3 published CVE records in this archive. The latest tracked vulnerability was published Mar 25, 2026; the highest CVE/CNA score is 8.8.
Plugin slug:
review-schemaLatest vulnerability
CVE-2026-25344: Review Schema: A security weakness
Review Schema is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is <= 2.2.6.
| Safe version |
|
||
|---|---|---|---|
| Mar 25, 2026 |
CVE-2026-25344
Review Schema: A security weakness
Review Schema is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is <= 2.2.6.
|
2.2.7 |
CVE6.5
NVDPending
|
| Mar 11, 2025 |
CVE-2025-1707
Review Schema: Filesystem traversal
Review Schema is affected by filesystem traversal. Exploitation requires an authenticated WordPress account. A crafted path can escape the intended directory and reach files or directories elsewhere on the server.
|
See mitigation notes |
CVE8.8
NVDPending
|
| Jan 31, 2024 |
CVE-2024-0836
WordPress Review & Structure Data Schema Plugin – Review Schema: A security weakness
WordPress Review & Structure Data Schema Plugin – Review Schema is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE4.3
NVD4.3
|