A vulnerability was found in Schema & Structured Data for WP & AMP Plugin up to 1.51 on WordPress and classified as problematic. Affected by this vulnerability is the function
saswp_tiny_multiple_faq of the component Shortcode Handler. Executing manipulation can lead to cross site scripting.
This vulnerability is registered as CVE-2025-11502. It is possible to launch the attack remotely. No exploit is available.