First published: Sun Feb 16 2025(Updated: )
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Levan Tarbor Forex Calculators allows Stored XSS. This issue affects Forex Calculators: from n/a through 1.3.6.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Levan Tarbor Forex Calculators | <=1.3.6 | |
WordPress Forex Calculators | <=1.3.6 |
Update the WordPress Forex Calculators wordpress plugin to the latest available version (at least 1.3.7).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-22689 has a moderate severity level due to its potential for storing Cross-site Scripting (XSS) exploits.
To fix CVE-2025-22689, upgrade the Forex Calculators to version 1.3.7 or later.
CVE-2025-22689 can be exploited to execute stored Cross-site Scripting (XSS) attacks, allowing attackers to run malicious scripts in users' browsers.
CVE-2025-22689 affects all versions of Forex Calculators up to and including 1.3.6.
Yes, CVE-2025-22689 is specifically associated with Levan Tarbor Forex Calculators and the WordPress Forex Calculators plugin.