CVE-2025-22333

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Jan 7, 2025
CWE ID 79

Summary

CVE-2025-22333: A Cross-site Scripting (XSS) vulnerability has been identified in Piotnet Piotnet Addons For Elementor. This issue, classified as Improper Neutralization of Input During Web Page Generation, allows attackers to inject malicious scripts into affected websites. The vulnerability can be exploited for stored XSS attacks, which can persist even after the initial attacker has been removed. Affected versions of Piotnet Addons For Elementor range from n/a to 2.4.31. Users are strongly advised to update their software as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Piotnet Addons for Elementor Plugin

Affected Vendors

  • WordPress