PT-2026-20611 · WordPress · Ixml – Google Xml Sitemap Generator

Johska

·

Published

2026-02-19

·

Updated

2026-02-19

·

CVE-2025-14076

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions iXML – Google XML sitemap generator plugin for WordPress versions prior to 0.6
Description The iXML – Google XML sitemap generator plugin for WordPress is susceptible to Reflected Cross-Site Scripting. This is due to insufficient input sanitization and output escaping of the iXML email parameter. An unauthenticated attacker can inject arbitrary web scripts into pages, which will execute if a user is tricked into performing an action, such as clicking a link.
Recommendations Update the iXML – Google XML sitemap generator plugin for WordPress to a version later than 0.6.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-14076

Affected Products

Ixml – Google Xml Sitemap Generator