CVE-2025-48237
EUVD-2025-2815719.05.2025, 15:15
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPFactory Wishlist for WooCommerce wish-list-for-woocommerce allows Stored XSS.This issue affects Wishlist for WooCommerce: from n/a through <= 3.2.2.Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| wpfactory | wishlist_for_woocommerce\ | 𝑥 ≤ 3.2.2 | CNA |