cvemon logocvemon logo

Activity

Trending

CVEs

CVE-2025-23492

Published Feb 14, 2025

Last updated 5 days ago

  1. Overview

  2. Weaknesses

  3. Social media

  4. References

Overview

Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CantonBolo WordPress 淘宝客插件 taobaoke allows Reflected XSS.This issue affects WordPress 淘宝客插件: from n/a through <= 1.1.2.
Source
audit@patchstack.com
NVD status
Deferred

Weaknesses

audit@patchstack.com
CWE-79

Social media

Hype score
Not currently trending
  1. 🚨 CVE-2025-23492 🔴 HIGH (7.1) 🏢 CantonBolo - WordPress 淘宝客插件 🏗️ Unknown Version 🔗 https://t.co/xkoHVyUy09 #CyberCron #VulnAlert https://t.co/m1mmNectue

    @cybercronai

    15 Feb 2025

    4 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. CVE-2025-23492 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CantonBolo WordPress 淘宝客插件 allows Reflected XSS. This issue affe… https://t.co/SgB28tgEOy

    @CVEnew

    14 Feb 2025

    243 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

References

Sources include official advisories and independent security research.

  • https://nvd.nist.gov/vuln/detail/CVE-2025-23492
  • https://patchstack.com/database/Wordpress/Plugin/taobaoke/vulnerability/wordpress-plugin-1-1-2-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve
TRY INTRUDER
Intruder logo

© 2026 Intruder Systems Ltd.

AboutPrivacySitemapFeeds