cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches forwp-customize-login-page wp-customize-login-page

Direction: ascending
Apr 26, 2025

WP Customize Login Page # CVE-2025-46477

CVE, Research URL

CVE-2025-46477

Date
Apr 24, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Carlo La Pera WP Customize Login Page allows Stored XSS. This issue affects WP Customize Login Page: from n/a through 1.6.5.
Affected versions
max 1.6.5.
Status
vulnerable

WP Customize Login Page # CVE-2025-46485

CVE, Research URL

CVE-2025-46485

Date
Apr 24, 2025
Research Description
Missing Authorization vulnerability in Carlo La Pera WP Customize Login Page allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects WP Customize Login Page: from n/a through 1.6.5.
Affected versions
max 1.6.5.
Status
vulnerable