A vulnerability has been found in TweetThis Shortcode Plugin up to 1.8.0 on WordPress and classified as problematic. Affected is the function
tweetthis
of the component Shortcode Handler. This manipulation causes cross site scripting.
This vulnerability is handled as CVE-2025-10136. The attack can be initiated remotely. There is not any exploit available.