Vulnerabilities and security researches forwp-customize-login-page wp-customize-login-page
Direction: ascendingApr 26, 2025
WP Customize Login Page # CVE-2025-46477
- CVE, Research URL
- Home page URL
- Application
- Date
- Apr 24, 2025
- Research Description
- Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Carlo La Pera WP Customize Login Page allows Stored XSS. This issue affects WP Customize Login Page: from n/a through 1.6.5.
- Affected versions
-
max 1.6.5.
- Status
-
vulnerable
WP Customize Login Page # CVE-2025-46485
- CVE, Research URL
- Home page URL
- Application
- Date
- Apr 24, 2025
- Research Description
- Missing Authorization vulnerability in Carlo La Pera WP Customize Login Page allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects WP Customize Login Page: from n/a through 1.6.5.
- Affected versions
-
max 1.6.5.
- Status
-
vulnerable