Medium severity4.8NVD Advisory· Published Sep 9, 2022· Updated Jun 17, 2026
CVE-2022-35725
CVE-2022-35725
Description
Authenticated (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Hans Matzen's wp-forecast plugin <= 7.5 at WordPress.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: <= 7.5
- Range: <=7.5
- cpe:2.3:a:wp-forecast_project:wp-forecast:*:*:*:*:*:wordpress:*:*Range: <=7.5
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.