A vulnerability described as problematic has been identified in dartiss Code Embed Plugin up to 2.6.0 on WordPress. This issue affects some unknown processing of the component External URL Embed Feature. Executing a manipulation can lead to cross site scripting.
This vulnerability appears as CVE-2026-48093. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is recommended.