CVE-2025-8686 | WP Easy FAQs Plugin up to 1.0.5 on WordPress Shortcode WP_EASY_FAQ cross site scripting
A vulnerability was found in WP Easy FAQs Plugin up to 1.0.5 on WordPress. It has been classified as problematic. Affected by this vulnerability is the function WP_EASY_FAQ of the component Shortcode Handler. This manipulation causes cross site scripting.
This vulnerability is tracked as CVE-2025-8686. The attack is possible to be carried out remotely. No exploit exists.