WordPress · Get Use Apis · CVE-2025-15363
**Name of the Vulnerable Software and Affected Versions**
Get Use APIs WordPress plugin versions prior to 2.0.10
**Description**
The Get Use APIs WordPress plugin executes imported JSON, potentially enabling Cross-Site Scripting (XSS) attacks. Users with a contributor role or higher may be able to perform these attacks under specific server configurations.
**Recommendations**
Update the Get Use APIs WordPress plugin to version 2.0.10 or later.