cvemon logocvemon logo

Activity

Trending

CVEs

CVE-2025-23525

Published Feb 14, 2025

Last updated 7 days ago

  1. Overview

  2. Weaknesses

  3. Social media

  4. References

Overview

Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in kvvaradha Kv Compose Email From Dashboard kv-send-email-from-admin allows Reflected XSS.This issue affects Kv Compose Email From Dashboard: from n/a through <= 1.1.
Source
audit@patchstack.com
NVD status
Deferred

Weaknesses

audit@patchstack.com
CWE-79

Social media

Hype score
Not currently trending
  1. ๐Ÿšจ CVE-2025-23525 ๐Ÿ”ด HIGH (7.1) ๐Ÿข kvvaradha - Kv Compose Email From Dashboard ๐Ÿ—๏ธ Unknown Version ๐Ÿ”— https://t.co/2GItYVVlh9 #CyberCron #VulnAlert https://t.co/lw5YcvKLAI

    @cybercronai

    15 Feb 2025

    19 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. CVE-2025-23525 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in kvvaradha Kv Compose Email From Dashboard allows Reflected XSS. โ€ฆ https://t.co/4YXD7HbrCj

    @CVEnew

    14 Feb 2025

    234 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

References

Sources include official advisories and independent security research.

  • https://nvd.nist.gov/vuln/detail/CVE-2025-23525
  • https://patchstack.com/database/Wordpress/Plugin/kv-send-email-from-admin/vulnerability/wordpress-kv-compose-email-from-dashboard-plugin-1-1-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve
TRY INTRUDER
Intruder logo

ยฉ 2026 Intruder Systems Ltd.

AboutPrivacySitemapFeeds