cvemon logocvemon logo

Activity

Trending

CVEs

CVE-2025-22308

Published Jan 7, 2025

Last updated 5 days ago

  1. Overview

  2. Weaknesses

  3. Social media

  4. References

Overview

Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Takashi Kitajima Smart Custom Fields smart-custom-fields allows Stored XSS.This issue affects Smart Custom Fields: from n/a through <= 5.0.0.
Source
audit@patchstack.com
NVD status
Deferred

Weaknesses

audit@patchstack.com
CWE-79

Social media

Hype score
Not currently trending
  1. CVE-2025-22308 Stored XSS Vulnerability in inc2734 Smart Custom Fields 5.0.0 There is a Cross-site Scripting (XSS) vulnerability in inc2734 Smart Custom Fields. This allows Stored XSS. The issue affects all versi... https://t.co/X0WHt8lgjY

    @VulmonFeeds

    7 Jan 2025

    30 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. CVE-2025-22308 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in inc2734 Smart Custom Fields allows Stored XSS.This issue affects… https://t.co/RTcpOFgisU

    @CVEnew

    7 Jan 2025

    208 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

References

Sources include official advisories and independent security research.

  • https://nvd.nist.gov/vuln/detail/CVE-2025-22308
  • https://patchstack.com/database/Wordpress/Plugin/smart-custom-fields/vulnerability/wordpress-smart-custom-fields-plugin-5-0-0-cross-site-scripting-xss-vulnerability?_s_id=cve
TRY INTRUDER
Intruder logo

© 2026 Intruder Systems Ltd.

AboutPrivacySitemapFeeds