First published: Sun Feb 16 2025(Updated: )
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Botnet Attack Blocker allows Stored XSS. This issue affects Botnet Attack Blocker: from n/a through 2.0.0.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
NotFound Botnet Attack Blocker | >n/a<=2.0.0 | |
WordPress Botnet Attack Blocker | <=2.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-23975 has a severity rating that indicates a risk of Stored Cross-Site Scripting (XSS) vulnerabilities.
To fix CVE-2025-23975, update NotFound Botnet Attack Blocker to version 2.0.1 or later.
CVS-2025-23975 affects NotFound Botnet Attack Blocker versions from n/a through 2.0.0.
Stored XSS refers to malicious scripts that are injected and stored within the application, potentially affecting users who access the stored data.
Yes, similar vulnerabilities could potentially impact any application that uses flawed input validation methods, including WordPress Botnet Attack Blocker.