cleantalk
Vulnerabilities and Security Researches

Site Reviews, CVE-2025-1232

CVE, Research URL

CVE-2025-1232

Application

Site Reviews

Published on
Mar 19, 2025
Research Description
The Site Reviews WordPress plugin before 7.2.5 does not properly sanitise and escape some of its Review fields, which could allow unauthenticated users to perform Stored XSS attacks
Affected versions
max 7.2.5.
Status
vulnerable