cve/2025/CVE-2025-58625.md
2025-09-29 21:09:30 +02:00

793 B

CVE-2025-58625

Description

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Spiffy Plugins WP Flow Plus allows Stored XSS. This issue affects WP Flow Plus: from n/a through 5.2.5.

POC

Reference

No PoCs from references.

Github