First published: Thu Apr 24 2025(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in Billy Bryant Tabs allows Stored XSS. This issue affects Tabs: from n/a through 4.0.3.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Billy Bryant Tabs | >n/a<=4.0.3 | |
WordPress Tabs Plugin | <=4.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-46522 has been classified as a high severity Cross-Site Request Forgery (CSRF) vulnerability that can lead to Stored XSS.
To fix CVE-2025-46522, update Billy Bryant Tabs or the WordPress Tabs plugin to version 4.0.4 or later.
CVE-2025-46522 affects Billy Bryant Tabs from n/a through 4.0.3 and the WordPress Tabs plugin up to version 4.0.3.
Exploitation of CVE-2025-46522 can allow attackers to execute malicious scripts on users' browsers, potentially leading to data theft or account compromise.
Yes, CVE-2025-46522 is specifically related to Billy Bryant Tabs and the WordPress Tabs plugin, impacting their respective versions.