CVE-2025-23681: WordPress REDIRECTION PLUS plugin <= 2.0.0 - Reflected Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in tahminajannat REDIRECTION PLUS redirection-plus allows Reflected XSS.This issue affects REDIRECTION PLUS: from n/a through <= 2.0.0.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-23681?
The severity of CVE-2025-23681 is considered high due to its potential for reflected cross-site scripting (XSS) attacks.
How do I fix CVE-2025-23681?
To fix CVE-2025-23681, upgrade REDIRECTION PLUS to version 2.0.1 or later that addresses the XSS vulnerability.
Which versions are affected by CVE-2025-23681?
CVE-2025-23681 affects REDIRECTION PLUS from version n/a up to and including version 2.0.0.
What kind of vulnerability is CVE-2025-23681?
CVE-2025-23681 is categorized as a reflected cross-site scripting (XSS) vulnerability.
Who is the vendor for the affected software in CVE-2025-23681?
The affected software in CVE-2025-23681 is provided by jannatqualitybacklinks.com and also available as a WordPress plugin.