A vulnerability was found in mkerstner Simple Random Posts Shortcode Plugin up to 0.3 on WordPress. It has been rated as problematic. The impacted element is the function
simple_random_posts of the component Shortcode Handler. Performing a manipulation of the argument container_right_width results in cross site scripting.
This vulnerability is reported as CVE-2026-6246. The attack is possible to be carried out remotely. No exploit exists.