CVE-2025-26884: WordPress Greenshift plugin <= 10.8 - Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpsoul Greenshift greenshift-animation-and-page-builder-blocks allows Stored XSS.This issue affects Greenshift: from n/a through <= 10.8.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-26884?
CVE-2025-26884 is classified as a stored cross-site scripting (XSS) vulnerability, which can lead to serious security implications.
How do I fix CVE-2025-26884?
To fix CVE-2025-26884, update the Wpsoul Greenshift plugin to the latest version beyond 10.8.
What are the impacted versions for CVE-2025-26884?
CVE-2025-26884 affects Wpsoul Greenshift versions from n/a up to 10.8.
What type of vulnerability is CVE-2025-26884?
CVE-2025-26884 is an improper neutralization of input during web page generation vulnerability, specifically a stored XSS.
Are there any known exploits for CVE-2025-26884?
As of now, specific exploit details for CVE-2025-26884 are not publicly available, but the nature of the vulnerability indicates potential for exploitation.