Description

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Arefly WP Header Notification wp-header-notification allows Stored XSS.This issue affects WP Header Notification: from n/a through <= 1.2.7.

INFO

Published Date :

2025-01-07T14:57:07.201Z

Last Modified :

2026-04-01T15:41:21.154Z

Source :

Patchstack
AFFECTED PRODUCTS

The following products are affected by CVE-2025-22579 vulnerability.

Vendors Products
Wordpress
  • Wordpress
REFERENCES

CVSS Vulnerability Scoring System