Логотип exploitDog
bind:CVE-2025-10357
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-10357

Количество 2

Количество 2

nvd логотип

CVE-2025-10357

4 месяца назад

The Simple SEO WordPress plugin before 2.0.32 does not sanitise and escape some parameters when outputing them in the page, which could allow users with a role as low as contributor to perform Cross-Site Scripting attacks.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-5mhp-3vx5-62cf

4 месяца назад

The Simple SEO WordPress plugin before 2.0.32 does not sanitise and escape some parameters when outputing them in the page, which could allow users with a role as low as contributor to perform Cross-Site Scripting attacks.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-10357

The Simple SEO WordPress plugin before 2.0.32 does not sanitise and escape some parameters when outputing them in the page, which could allow users with a role as low as contributor to perform Cross-Site Scripting attacks.

CVSS3: 6.1
0%
Низкий
4 месяца назад
github логотип
GHSA-5mhp-3vx5-62cf

The Simple SEO WordPress plugin before 2.0.32 does not sanitise and escape some parameters when outputing them in the page, which could allow users with a role as low as contributor to perform Cross-Site Scripting attacks.

CVSS3: 6.1
0%
Низкий
4 месяца назад

Уязвимостей на страницу