Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MultiVendorX MultiVendorX allows Stored XSS. This issue affects MultiVendorX: from n/a through 4.2.22.
Metrics
Affected Vendors & Products
References
History
Wed, 09 Jul 2025 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Multivendorx
Multivendorx multivendorx |
|
| CPEs | cpe:2.3:a:multivendorx:multivendorx:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Multivendorx
Multivendorx multivendorx |
Mon, 19 May 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 19 May 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MultiVendorX MultiVendorX allows Stored XSS. This issue affects MultiVendorX: from n/a through 4.2.22. | |
| Title | WordPress MultiVendorX <= 4.2.22 - Cross Site Scripting (XSS) Vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published: 2025-05-19T14:45:11.886Z
Updated: 2025-05-19T15:17:48.130Z
Reserved: 2025-05-19T14:13:16.806Z
Link: CVE-2025-48263
Updated: 2025-05-19T15:08:21.784Z
Status : Analyzed
Published: 2025-05-19T15:15:29.830
Modified: 2025-07-09T02:05:17.720
Link: CVE-2025-48263
No data.
ReportizFlow