CVE-2025-48256
19.05.2025, 15:15
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Xylus Themes Import Social Events allows Stored XSS. This issue affects Import Social Events: from n/a through 1.8.5.
Vendor | Product | Version |
---|---|---|
xylusthemes | import_social_events | 𝑥 ≤ 1.8.5 |
𝑥
= Vulnerable software versions