cleantalk
Vulnerabilities and Security Researches

Rescue Shortcodes, CVE-2025-39528

CVE, Research URL

CVE-2025-39528

Application

Rescue Shortcodes

Published on
Apr 16, 2025
Research Description
Rescue Shortcodes [rescue-shortcodes] <= 3.1 (unfixed) CVE-2025-39528 [en] Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Rescue Themes Rescue Shortcodes allows Stored XSS. This issue affects Rescue Shortcodes: from n/a through 3.1.
Affected versions
Min -, max 3.1.
Status
vulnerable