CVE-2025-62069: WordPress MDTF plugin <= 1.3.3.8 - Cross Site Scripting (XSS) vulnerability
Published Oct 22, 2025
·Updated
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in RealMag777 MDTF wp-meta-data-filter-and-taxonomy-filter.This issue affects MDTF: from n/a through <= 1.3.3.8.
Affected Software
2 affected components
RealMag777 MDTF wp-meta-data-filter-and-taxonomy-filter<=1.3.3.8
WordPress MDTF plugin<=1.3.3.8
Event History
Oct 22, 2025
CVE Published
via MITRE·02:32 PM
Data Sourced
via MITRE·02:32 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-62069?
CVE-2025-62069 is classified as a high severity Cross-site Scripting (XSS) vulnerability.
2
How do I fix CVE-2025-62069?
To fix CVE-2025-62069, update the RealMag777 MDTF wp-meta-data-filter-and-taxonomy-filter to a version later than 1.3.3.8.
3
What versions are affected by CVE-2025-62069?
CVE-2025-62069 affects MDTF versions from n/a through 1.3.3.8.
4
Is there a known exploit for CVE-2025-62069?
Yes, CVE-2025-62069 could potentially be exploited to execute arbitrary JavaScript in the context of the user's browser.
5
Who is the vendor associated with CVE-2025-62069?
The vendor associated with CVE-2025-62069 is RealMag777 for the MDTF wp-meta-data-filter-and-taxonomy-filter.