First published: Thu Apr 17 2025(Updated: )
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Studio Hyperset The Great Firewords of China allows Stored XSS. This issue affects The Great Firewords of China: from n/a through 1.2.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Studio Hyperset The Great Firewords of China | <=1.2 | |
WordPress The Great Firewords of China | <=1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-22771 is classified as a stored cross-site scripting (XSS) vulnerability, which can lead to severe impacts on affected systems.
To fix CVE-2025-22771, update The Great Firewords of China to version 1.3 or later, which contains the necessary patches.
Yes, if you are using The Great Firewords of China version 1.2 or earlier, your website may be vulnerable to CVE-2025-22771.
CVE-2025-22771 is an improper neutralization of input during web page generation, specifically a cross-site scripting (XSS) vulnerability.
CVE-2025-22771 affects users of both Studio Hyperset and WordPress versions of The Great Firewords of China up to and including version 1.2.