← WordPress Vulnerabilities
WordPress security by component

Review Schema

Review Schema is a WordPress component with 3 published CVE records in this archive. The latest tracked vulnerability was published Mar 25, 2026; the highest CVE/CNA score is 8.8.

Plugin slug: review-schema

CVE-2026-25344: Review Schema: A security weakness

Review Schema is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is <= 2.2.6.

PublishedMar 25, 2026
Known safe version2.2.7
Safe version
Mar 25, 2026 CVE-2026-25344
Review Schema: A security weakness
Review Schema is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is <= 2.2.6.
2.2.7
CVE6.5
NVDPending
Mar 11, 2025 CVE-2025-1707
Review Schema: Filesystem traversal
Review Schema is affected by filesystem traversal. Exploitation requires an authenticated WordPress account. A crafted path can escape the intended directory and reach files or directories elsewhere on the server.
See mitigation notes
CVE8.8
NVDPending
Jan 31, 2024 CVE-2024-0836
WordPress Review & Structure Data Schema Plugin – Review Schema: A security weakness
WordPress Review & Structure Data Schema Plugin – Review Schema is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.3
NVD4.3