CVE-2026-1901 | QuestionPro Surveys Plugin up to 1.0 on WordPress Shortcode cross site scripting
A vulnerability classified as problematic was found in QuestionPro Surveys Plugin up to 1.0 on WordPress. The impacted element is an unknown function of the component Shortcode Handler. Such manipulation leads to cross site scripting.
This vulnerability is listed as CVE-2026-1901. The attack may be performed from remote. There is no available exploit.