CVE-2026-82126
Schema & Structured Data for WP & AMP 1.63 - 1.65 - Contributor+ Non-Public Post Content Disclosure via AI Schema Generation
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
The Schema & Structured Data for WP & AMP WordPress plugin before 1.66 does not check that a user is allowed to edit the specific post they request schema generation for, allowing users with the contributor role and above to obtain the content of other users' draft, pending, private and password protected posts.
| Vendor | unknown |
| Product | schema & structured data for wp & amp |
| Published | Sep 16, 2026 |
Stay Ahead of the Next One
Get instant alerts for unknown schema & structured data for wp & amp
Be the first to know when new unknown vulnerabilities affecting unknown schema & structured data for wp & amp are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Unknown / Schema & Structured Data for WP & AMP
1.63 < 1.66
References
Credits
Shirshak WPScan