CVE-2018-20977: Brainstormforce Schema
Medium severity, CVSS 6.1. EPSS: 0.9% chance of exploitation in the next 30 days.
The all-in-one-schemaorg-rich-snippets plugin before 1.5.0 for WordPress has XSS on the settings page.
Affected products
- Brainstormforce Schema: before 1.5.0 (fixed in 1.5.0)
Published 2019-08-21. Last modified 2026-06-17.