CVE-2025-63075: WordPress Betheme theme <= 28.2 - Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in muffingroup Betheme betheme allows DOM-Based XSS.This issue affects Betheme: from n/a through <= 28.2.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-63075?
CVE-2025-63075 is classified as a high-severity vulnerability due to its potential for exploitation via cross-site scripting.
How do I fix CVE-2025-63075?
To fix CVE-2025-63075, update the Betheme to a version later than 28.1.7 where the vulnerability is addressed.
What are the risks associated with CVE-2025-63075?
The risks associated with CVE-2025-63075 include unauthorized script execution, data theft, and potential site compromise.
Who is affected by CVE-2025-63075?
CVE-2025-63075 affects users of the Betheme from n/a through version 28.1.7.
What is the nature of CVE-2025-63075?
CVE-2025-63075 is an improper neutralization of input during web page generation, leading to a DOM-based cross-site scripting vulnerability.