Surbma | Yoast SEO Breadcrumb Shortcode

Surbma | Yoast SEO Breadcrumb Shortcode has one disclosed vulnerability in the WordSec catalog, all reported in 2026; it remains unpatched as of August 2026. Their average CVSS score is 6.4, and the most serious one scores 6.4 out of 10.

The most common weakness is Cross-Site Scripting, behind 1 of the records (100%).

The one issue recorded for Surbma | Yoast SEO Breadcrumb Shortcode has no published fix yet, which makes virtual patching the only reliable mitigation. The oldest unresolved one dates back to 2026.

All of these findings were reported by zaim. Surbma | Yoast SEO Breadcrumb Shortcode is installed on roughly 3,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 6.9.7.

Strategic Overview

Avg CVSSMedium
6.4/ 10
Patch Coverage0%
Open

1

Fixed

0

Get automatic notifications for all Surbma | Yoast SEO Breadcrumb Shortcode vulnerabilities before they are exploited.

Most severe open issueCVSS 6.4CVE-2026-57764

Surbma | Yoast SEO Breadcrumb Shortcode <= 1.2 - Authenticated (Contributor+) Stored Cross-Site Scripting

Read the full analysis

Vulnerability Records

1 records
Surbma | Yoast SEO Breadcrumb Shortcode banner
Latestv1.2

Surbma | Yoast SEO Breadcrumb Shortcode

Surbma

Author

Surbma

4.2(9)
84/100
Last Updated
2026-03-27 (5mo ago)
Active Installs
3,000+
Downloads
39,239
Requires WP
5.0+
Requires PHP
7.4+
Tested up to
WP 6.9.7
Created
2015-01-28 (12y ago)

A simple shortcode to include Yoast SEO’s breadcrumb function everywhere on your WordPress website. You have to install and activate the WordPress SEO by Yoast plugin and enable breadcrumb option to use this shortcode. With this shortcode you can put Yoast’s fantastic breadcrumb feature manually into every post and page or even into custom post types. If your theme supports it, you can use this shortcode in your widget areas with the Text widget. The shortcode: [yoast-breadcrumb] There are two parameters for this shortcode: before – The code that your breadcrumb should be prefixed with. Default value: <div class="breadcrumb" itemprop="breadcrumb"> after – The code that should be added on the back of your breadcrumb. Default value: </div> You can read more informations about Yoast’s breadcrumb function here: Yoast Breadcrumbs – WordPress Breadcrumbs Do you want to contribute or help improving this plugin? You can find it on GitHub: https://github.com/Surbma/surbma-yoast-breadcrumb-shortcode You can find my other plugins and projects on GitHub: https://github.com/Surbma Please feel free to contribute, help or recommend any new features for my plugins, themes and other projects. Do you want to know more about me? Visit my webpage: Surbma.com

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C