PT-2025-54318 · Webvitaly · Webvitaly Extra Shortcodes

Dj

+1

·

Published

2025-12-31

·

Updated

2026-01-01

·

CVE-2025-62111

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Webvitaly Extra Shortcodes versions through 2.2
Description The software contains a flaw related to improper input handling during web page generation, specifically a Stored Cross-site Scripting (XSS) issue. This allows for the injection of malicious scripts into web pages. The issue impacts Extra Shortcodes. The vulnerability allows an attacker to inject malicious code that will be executed in the context of other users' browsers when they view the affected web page.
Recommendations Update Webvitaly Extra Shortcodes to a version later than 2.2.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-62111

Affected Products

Webvitaly Extra Shortcodes