CVE-2025-23569
Published Jan 16, 2025
Last updated 7 days ago
- Description
- Cross-Site Request Forgery (CSRF) vulnerability in Kelvin Ng Shortcode in Comment shortcode-in-comment allows Stored XSS.This issue affects Shortcode in Comment: from n/a through <= 1.1.1.
- Source
- audit@patchstack.com
- NVD status
- Deferred
- audit@patchstack.com
- CWE-352
- Hype score
- Not currently trending