A vulnerability identified as problematic has been detected in Yoast SEO Plugin up to 28.0 on WordPress. This issue affects the function
get_permalink. This manipulation of the argument post_name causes cross site scripting.
This vulnerability is registered as CVE-2026-15425. Remote exploitation of the attack is possible. No exploit is available.