First published: Fri Jan 24 2025(Updated: )
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Matthias Wagner - FALKEmedia Caching Compatible Cookie Opt-In and JavaScript allows Stored XSS. This issue affects Caching Compatible Cookie Opt-In and JavaScript: from n/a through 0.0.10.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Matthias Wagner FALKEmedia Caching Compatible Cookie Opt-In | <=0.0.10 | |
WordPress Caching Compatible Cookie Opt-In plugin | <=0.0.10 |
Update the WordPress Caching Compatible Cookie Opt-In and JavaScript wordpress plugin to the latest available version (at least 0.0.11).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-24547 is classified as a stored Cross-site Scripting (XSS) vulnerability.
To fix CVE-2025-24547, you should upgrade the affected FALKEmedia Caching Compatible Cookie Opt-In and JavaScript plugin to the latest version.
CVE-2025-24547 affects all versions of the FALKEmedia Caching Compatible Cookie Opt-In and JavaScript up to and including version 0.0.10.
CVE-2025-24547 impacts the Matthias Wagner FALKEmedia Caching Compatible Cookie Opt-In and the WordPress Caching Compatible Cookie Opt-In plugin.
CVE-2025-24547 is an example of improper neutralization of input during web page generation, specifically leading to stored Cross-site Scripting (XSS).