CVE-2025-48256
EUVD-2025-2817519.05.2025, 15:15
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Xylus Themes Import Social Events import-facebook-events allows Stored XSS.This issue affects Import Social Events: from n/a through <= 1.8.5.Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| xylusthemes | import_social_events | 𝑥 ≤ 1.8.5 |
𝑥
= Vulnerable software versions