PT-2025-38893 · WordPress · Quick View For Woocommerce

Prissy

·

Published

2025-09-22

·

Updated

2025-09-22

·

CVE-2025-58228

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Quick View for WooCommerce versions through 2.2.16
Description The software contains a flaw related to improper input handling during web page generation, which can lead to Cross-site Scripting (XSS). This specific instance allows for Stored XSS attacks. The issue affects the way data is processed and displayed, potentially allowing malicious scripts to be injected into web pages.
Recommendations Update Quick View for WooCommerce to a version later than 2.2.16.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-58228

Affected Products

Quick View For Woocommerce