Veronalabs · Wp Sms · CVE-2026-25343
**Name of the Vulnerable Software and Affected Versions**
VeronaLabs WP SMS versions through 7.1
**Description**
The software contains a flaw related to improper input handling during web page generation, specifically a DOM-Based Cross-site Scripting issue. This allows for the execution of malicious scripts within the context of a user's browser. The issue is present in the WP SMS component.
**Recommendations**
Update VeronaLabs WP SMS to a version later than 7.1.