PoC Index

CVE-2025-1232

HIGH 8.8EPSS 1.9%

The Site Reviews WordPress plugin before 7.2.5 does not properly sanitise and escape some of its Review fields, which could allow unauthenticated users to perform Stored XSS attacks

CVSS v3.1
8.8 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS
1.88% chance of exploitation in the next 30 days, 78th percentile
Nuclei
high · CWE-79
Published
2025-03-19

Proof-of-concept exploits (1)

Nuclei templates (1)

References

Related