CVE-2025-30611

CVSS 3.1 Score 7.1 of 10 (high)

Details

Published Apr 3, 2025
Updated: Apr 7, 2025
CWE ID 79

Summary

CVE-2025-30611 is a Cross-site Scripting (XSS) vulnerability affecting the Wptobe-signinup application from version n/a through 1.1.2. An attacker can inject malicious scripts into the application during web page generation, exploiting improper neutralization of user inputs. This issue poses a significant risk, as successful attacks can lead to data theft, unauthorized access, or system compromises. Users of the impacted version of Wptobe-signinup are advised to update to a patched release as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share