Medium severity6.1NVD Advisory· Published Mar 25, 2025· Updated Jun 17, 2026
CVE-2025-1798
CVE-2025-1798
Description
The does not sanitise and escape some parameters when outputting them back in a page, allowing unauthenticated users the ability to perform stored Cross-Site Scripting attacks.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- cpe:2.3:a:italia:design_comuni_italia:*:*:*:*:*:wordpress:*:*Range: <1.1.2
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/c5c30191-857c-419c-9096-d1fe14d34eaa/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.