Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Schema & Structured Data for WP & AMP — Vulnerabilities & Security Advisories 16

All 16 CVE vulnerabilities found in Schema & Structured Data for WP & AMP, with AI-generated Chinese analysis, references, and POCs.

This page aggregates security vulnerabilities associated with the Schema & Structured Data for WP & AMP plugin, a WordPress extension developed by GSchema. It collects reported security flaws affecting this specific product, covering the period from its initial release through the most recent disclosures. Readers can use this resource to track the vendor’s advisory history, understand the specific weakness classes impacting structured data generation in WordPress environments, and review the complete vulnerability timeline for this plugin. The collection includes issues related to improper input validation, cross-site scripting, and other common web application weaknesses that have been identified in this software. By examining these records, developers and security professionals can assess the historical risk profile of the plugin and identify patterns in how vulnerabilities have been addressed over time. This aggregation serves as a reference point for evaluating the security posture of websites utilizing this specific schema markup tool, allowing users to make informed decisions about patching and monitoring. The data presented here is compiled from public security advisories and vulnerability databases, providing a centralized view of known issues without requiring users to search multiple disparate sources.

Vendor: Magazine3

CVE ID Title CVSS Severity Published
CVE-2026-97291 WordPress Schema & Structured Data for WP & AMP plugin <= 1.66 - PHP Object Injection vulnerability CWE-502 8.8 High 2026-09-30
CVE-2026-82127 Schema & Structured Data for WP & AMP < 1.67 - Editor+ Stored XSS via Taxonomy Term Fields - - 2026-09-30
CVE-2026-82125 Schema & Structured Data for WP & AMP 1.46 - 1.65 - Unauthenticated Non-Public Comment Content Disclosure via IDOR - - 2026-09-16
CVE-2026-82126 Schema & Structured Data for WP & AMP 1.63 - 1.65 - Contributor+ Non-Public Post Content Disclosure via AI Schema Generation - - 2026-09-16
CVE-2026-82124 Schema & Structured Data for WP & AMP < 1.66 - Unauthenticated Password-Protected Post Content Disclosure via JSON-LD Schema Output - - 2026-09-16
CVE-2026-9067 Schema & Structured Data for WP & AMP < 1.60 - Unauthenticated Arbitrary Media Upload - - 2026-06-10
CVE-2025-14069 Schema & Structured Data for WP & AMP <= 1.54 - Authenticated (Contributor+) Stored Cross-Site Scripting via User Custom Schema CWE-79 6.4 Medium 2026-01-23
CVE-2025-11502 Schema & Structured Data for WP & AMP <= 1.51 - Authenticated (Contributor+) Stored Cross-Site Scripting CWE-79 6.4 Medium 2025-11-01
CVE-2025-9512 Schema & Structured Data for WP & AMP < 1.50 - Unauthenticated Stored-XSS 6.1AI Medium AI 2025-10-01
CVE-2024-49683 WordPress Schema & Structured Data for WP & AMP plugin <= 1.3.5 - Sensitive Data Exposure vulnerability CWE-862 5.3 Medium 2024-10-24
CVE-2024-5582 Schema & Structured Data for WP & AMP <= 1.33 - Authenticated (Contributor+) Stored Cross-Site Scripting via url Attribute CWE-79 6.4 Medium 2024-07-17
CVE-2024-3491 Schema & Structured Data for WP & AMP <= 1.29 - Authenticated (Contributor+) Stored Cross-Site Scripting via How To and FAQ Blocks CWE-79 6.4 Medium 2024-04-23
CVE-2024-1288 Schema & Structured Data for WP & AMP <= 1.26 - Missing Authorization to reCaptcha Key Modification CWE-284 4.3 Medium 2024-02-20
CVE-2024-1586 Schema & Structured Data for WP & AMP <= 1.26 - Authenticated (Custom) Stored Cross-Site Scripting CWE-79 6.4 Medium 2024-02-20
CVE-2023-51677 WordPress Schema & Structured Data for WP & AMP Plugin <= 1.23 is vulnerable to Cross Site Scripting (XSS) CWE-79 6.5 Medium 2024-02-01
CVE-2024-22146 WordPress Schema & Structured Data for WP & AMP Plugin <= 1.25 is vulnerable to Cross Site Scripting (XSS) CWE-79 6.5 Medium 2024-01-31

All 16 known CVE vulnerabilities affecting Schema & Structured Data for WP & AMP with full Chinese analysis, references, and POCs where available.