6.5
CVSSv3

CVE-2025-30610

CVSSv4: NA | CVSSv3: 6.5 | CVSSv2: NA | VMScore: 750 | EPSS: 0.00035 | KEV: Not Included
Published: 24/03/2025 Updated: 27/03/2025

Vulnerability Summary

Stored Cross-Site Scripting Vulnerability in WP Social Widget Before 2.2.6

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in catchsquare WP Social Widget allows Stored XSS. This issue affects WP Social Widget: from n/a up to and including 2.2.6.

Vulnerable Product Search on Vulmon Subscribe to Product

catchsquare wp social widget