Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-46477


Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Carlo La Pera WP Customize Login Page allows Stored XSS. This issue affects WP Customize Login Page: from n/a through 1.6.5.


Published

2025-04-24T16:15:38.517

Last Modified

2025-04-29T13:52:28.490

Status

Awaiting Analysis

Source

[email protected]

Severity

CVSSv3.1: 5.9 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-79

Affected Vendors & Products

-


References