CVE-2025-22575: WordPress SUPER RESPONSIVE SLIDER Plugin <= 1.4 - Reflected Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in extendyourweb SUPER RESPONSIVE SLIDER allows Reflected XSS. This issue affects SUPER RESPONSIVE SLIDER: from n/a through 1.4.
Other sources
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in extendyourweb SUPER RESPONSIVE SLIDER super-slider allows Reflected XSS.This issue affects SUPER RESPONSIVE SLIDER: from n/a through <= 1.4.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-22575?
CVE-2025-22575 is classified as a reflected XSS vulnerability, which poses a moderate risk to users of the affected software.
How do I fix CVE-2025-22575?
To fix CVE-2025-22575, update the SUPER RESPONSIVE SLIDER plugin to the latest version beyond 1.4.
Who is affected by CVE-2025-22575?
CVE-2025-22575 affects users of the SUPER RESPONSIVE SLIDER plugin for WordPress, specifically versions up to and including 1.4.
What kind of attack is possible with CVE-2025-22575?
CVE-2025-22575 allows attackers to conduct reflected cross-site scripting (XSS) attacks, potentially harming users who interact with the compromised web page.
Is there a workaround for CVE-2025-22575?
There are no known effective workarounds for CVE-2025-22575; the best course of action is to update the plugin to a secure version.