CVE-2025-23983: WordPress Tijaji theme <= 1.43 - Reflected Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tijaji allows Reflected XSS.This issue affects Tijaji: from n/a through 1.43.
Other sources
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in tijaji Tijaji tijaji allows Reflected XSS.This issue affects Tijaji: from n/a through <= 1.43.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-23983?
CVE-2025-23983 has a medium severity rating due to its potential to allow reflected cross-site scripting (XSS) attacks.
How do I fix CVE-2025-23983?
To fix CVE-2025-23983, upgrade Tijaji to a version later than 1.43 where the vulnerability has been addressed.
What versions of Tijaji are affected by CVE-2025-23983?
CVE-2025-23983 affects Tijaji versions from n/a through 1.43.
Can CVE-2025-23983 affect WordPress sites?
Yes, CVE-2025-23983 also affects the Tijaji theme on WordPress up to version 1.43.
What type of vulnerability is CVE-2025-23983?
CVE-2025-23983 is classified as a reflected cross-site scripting (XSS) vulnerability.