CVE-2025-32592

CVSS 3.1 Score 7.1 of 10 (high)

Details

Published Apr 17, 2025
CWE ID 79

Summary

CVE-2025-32592 is a Cross-site Scripting (XSS) vulnerability affecting TableOn – WordPress Posts Table Filterable, version 1.0.3 and below. The flaw stems from inadequate input neutralization during web page generation. An attacker can exploit this vulnerability to inject malicious scripts into the website, potentially stealing user data or taking unauthorized actions on their behalf. Successful exploitation requires the attacker to have the ability to create or modify posts on the vulnerable WordPress site. Users are strongly advised to update TableOn – WordPress Posts Table Filterable to a patched version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share