cve/2025/CVE-2025-23506.md
2025-09-29 21:09:30 +02:00

846 B

CVE-2025-23506

Description

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound WP IMAP Auth allows Reflected XSS. This issue affects WP IMAP Auth: from n/a through 4.0.1.

POC

Reference

No PoCs from references.

Github