cleantalk
Vulnerabilities and Security Researches

Reloadly Plugin, CVE-2025-62956

CVE, Research URL

CVE-2025-62956

Application

Reloadly Plugin

Published on
Oct 27, 2025
Research Description
Cross-Site Request Forgery (CSRF) vulnerability in iseremet Reloadly reloadly-topup-widget allows Stored XSS.This issue affects Reloadly: from n/a through <= 2.0.1.
Affected versions
max 2.0.1.
Status
vulnerable