First published: Thu Jan 16 2025(Updated: )
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Ella van Durpe Slides & Presentations allows Code Injection.This issue affects Slides & Presentations: from n/a through 0.0.39.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WordPress Slides & Presentations Plugin | >=0.0.39 | |
WordPress Slides & Presentations Plugin | <=0.0.39 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-23919 is classified as a high-severity Cross-Site Scripting (XSS) vulnerability that can lead to code injection.
To fix CVE-2025-23919, update the Ella van Durpe Slides & Presentations plugin to version 0.0.40 or later.
CVE-2025-23919 affects Ella van Durpe Slides & Presentations versions from n/a through 0.0.39.
CVE-2025-23919 is an improper neutralization of script-related HTML tags vulnerability, commonly known as basic Cross-Site Scripting.
Web administrators and users of the Ella van Durpe Slides & Presentations plugin should be concerned about CVE-2025-23919 due to the risk of code injection.