Medium severity6.1NVD Advisory· Published Oct 14, 2025· Updated Jun 17, 2026
CVE-2025-10357
CVE-2025-10357
Description
The Simple SEO WordPress plugin before 2.0.32 does not sanitise and escape some parameters when outputing them in the page, which could allow users with a role as low as contributor to perform Cross-Site Scripting attacks.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2<2.0.32+ 1 more
- (no CPE)range: <2.0.32
- (no CPE)range: <2.0.32
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.